Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs users to run local Python scripts that read the vault, generate output files, and optionally use environment-resolved paths, but it declares no permissions. This creates a trust and transparency gap: an agent or user may invoke file read/write behavior without an explicit permission boundary, increasing the chance of unintended access or modification of local content.
