Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill advertises and invokes shell-based scripts that can read environment/configuration, inspect files, and modify local state, yet it declares no permissions or user-facing guardrails. This creates a trust and review gap: users and platforms cannot accurately assess that invoking the skill may access sensitive inputs or alter the filesystem.
