Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill advertises a simple local TTS capability, yet the analysis detected shell, environment, and file read/write capabilities without any declared permissions. That creates a trust gap: users and reviewers cannot accurately assess what the skill may access or modify, and hidden execution/file capabilities can be abused for unintended local actions.
