Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill advertises operational capabilities that imply environment access, shell execution, and network activity, but it declares no permissions or trust boundaries. In an agent ecosystem, this prevents informed consent and can enable unexpectedly broad access to local systems and external services, especially when the examples include file/log monitoring and active HTTP checks.
