Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill advertises capabilities that imply shell and environment access, including remote command execution and file transfer, but does not declare permissions or trust boundaries. This increases the chance that a host platform or user will underestimate the skill's power, leading to unsafe invocation or insufficient review.
