Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill performs file read/write operations and creates or clears output directories, but it does not declare permissions or otherwise communicate these capabilities to the caller. This weakens the trust boundary and can lead to unexpected filesystem modification, especially because the configured base directory points to a real user path and later steps include deletion behavior.
