Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill clearly instructs users to install a hook, copy files into managed hook directories, and persist usage data to local JSON files, but the front matter does not declare corresponding permissions. Undeclared file read/write capability weakens user consent and security review because the skill can access session-derived data and write persistent records without an explicit permission contract.
