Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill instructs the agent to modify script variables and generate an HTML report, which implies file-writing behavior, but the skill declares no corresponding permissions. This mismatch is dangerous because an agent or runtime may perform filesystem writes without explicit user-visible authorization boundaries, increasing the risk of unintended overwrites or unauthorized artifact creation.
