Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares no permissions, yet its documented capabilities imply access to environment variables, filesystem I/O, shell execution, and possibly network behavior. Even if some of these are only used indirectly by example commands or supporting code, the absence of explicit permission declarations prevents reviewers and users from understanding the true attack surface and can enable unexpected data access or command execution.
