Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill declares no permissions, yet the detected capabilities include file read/write, shell, environment access, and network. This creates a trust and transparency problem: users may run a seemingly local/offline versioning skill without realizing it can access broader system resources, increasing the chance of unintended data exposure or command execution in downstream code.
