Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill documentation advertises command-line usage with a `--file` option and references a script that can read local files, but the skill declares no `permissions` or `allowed-tools` scope. That mismatch can lead to undeclared file access capability being exposed without explicit review or least-privilege controls, increasing the chance of unintended sensitive file reads when the skill is invoked on attacker-influenced paths.
