Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill declares no permissions while static analysis detected capabilities for environment access, file read/write, network, and shell execution. This is dangerous because users and orchestrators may treat the skill as local/offline and low-risk, when it may actually access sensitive files, invoke commands, or communicate externally without explicit disclosure.
