Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill explicitly instructs running local scripts, invoking shell commands, and writing output files, but no permissions are declared. That mismatch undermines least-privilege expectations and can cause the agent or user to execute filesystem and host-inspection actions without clear consent boundaries. In this context, the danger is elevated because the skill inventories services, ports, mounts, and host state, which are sensitive operational details.
