Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill documents file-writing behavior via the learner subsystem but declares itself as a pure local monitoring layer without corresponding permission disclosure. Undeclared write capability is dangerous because it expands trust assumptions: operators may invoke the skill expecting read/compute-only behavior while it persists data or modifies local files.
