Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill declares no explicit permissions, yet its description and metadata indicate it polls an API endpoint and writes multiple local files, which are capability-relevant actions. This mismatch weakens policy enforcement and reviewer visibility, making it easier for a scheduled autonomous agent to perform file writes and local network access without clear authorization boundaries.
