Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 81% confidence
- Finding
- The skill documentation instructs users to run local scripts that read input files and write generated output, but the skill declares no permissions. This mismatch is a real security issue because it hides file-system capabilities from whatever permission or review model governs skills, reducing transparency and making it easier for downstream automation to perform unexpected reads or writes.
