Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill instructs users to execute network requests and a shell script (`curl` and `bash scripts/setup-bot.sh`) while declaring no permissions or capability boundaries. This is dangerous because an agent or user may invoke external network access and shell execution without explicit consent, auditing, or sandboxing, increasing the chance of unintended code execution or data exfiltration.
