Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill declares an offline, local-only workflow, yet static analysis detected capabilities for environment access, file read/write, shell, and network without any declared permissions. That gap is dangerous because users and policy layers cannot accurately assess or constrain what the skill may do, increasing the chance of unintended data access, command execution, or outbound communication.
