Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill documentation instructs the agent to invoke a learner component that records results after analysis, which implies write-capable behavior not declared in the skill metadata. Undeclared persistence expands the trust boundary and can surprise operators, especially in environments that rely on declared permissions for sandboxing or policy enforcement.
