Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises no explicit permissions, yet the documented commands invoke Python scripts that can read and write project files, persist configuration, execute shell-like operations, and potentially access external services through Feishu integration. This creates a transparency and consent problem: users and the platform cannot accurately scope what the skill may do, increasing the chance of unauthorized file changes, data collection, or external data exposure.
