Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill clearly instructs shell-based system operations such as creating files under /etc and /usr/local/bin, initializing backups, and managing systemd units, yet no permissions are declared. This creates a trust and enforcement gap: a host platform may not correctly constrain or warn about the skill's capability to perform privileged filesystem and service-management actions.
