Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill references local scripts and a deployment workflow that implies filesystem access, yet it declares no explicit permissions or guardrails for reading and writing files. In a deployment context, undeclared file access is risky because the skill also instructs checking build artifacts and learning-state files, which can lead to accidental access to sensitive files or silent persistence beyond the user’s expectation.
