Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill explicitly directs use of local files under `memory/track/` and invokes scripts that read and write habit, goal, streak, and metrics data, yet no permissions are declared. This creates an authorization and transparency gap: the skill can persist sensitive personal data without an explicit permission boundary, making misuse or unexpected data access harder to govern.
