Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to read local reference files, execute shell commands, and modify project contents via an installer script, but it does not declare any permissions. That mismatch is a real security issue because it hides the skill's operational capabilities from the permission model and can lead to unauthorized file access or command execution if invoked in a broader agent environment.
