Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill invokes external scripts and shell redirection (`scripts/scrape_videos.sh`, `scripts/analyze_data.py`, and `>> data.json`), which implies file read/write capability even though no permissions are declared. This mismatch weakens security review and permission gating because an agent may perform filesystem operations that users and policy layers were not explicitly informed about.
