Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill declares no permissions, yet the analyzed capability set includes environment access, file read/write, shell, and network. This under-disclosure is dangerous because users may execute the skill believing it is offline and self-contained, while the implementation could access secrets, local files, or external services without informed consent.
