Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares no permissions, yet its documented/runtime capabilities include file access, shell execution, environment access, and possible network use. This is dangerous because users and orchestrators cannot make an informed trust decision, and hidden capabilities can be abused to read local secrets, modify files, or reach external services unexpectedly.
