Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill references a local script and input/output file operations but does not declare any tool scope, permissions, or allowed-tools boundary. In an agent framework, this can lead to unintended file read/write capability exposure or ambiguous authorization, increasing the chance that the skill is invoked with broader filesystem access than intended.
