Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks for vulnerabilities and agentic risk
The planner is local and not malicious, but it also keeps persistent user-preference/history memory and encourages self-updating its own skill instructions, so it needs review before installation.
Install only if you are comfortable with this skill keeping local memory about usage, errors, notes, and preferences across runs. Avoid recording sensitive goals or preferences, clear learned_patterns.json when needed, and require manual review before allowing any updates to SKILL.md or other installed skill instructions.
No suspicious patterns detected.