Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documents executable shell usage via curl/bash scripts while declaring no explicit permissions, creating a mismatch between the skill's apparent trust boundary and its real capabilities. This can cause an agent or reviewer to underestimate that the skill can trigger networked actions and file operations through shell commands.
