Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 76% confidence
- Finding
- The skill declares itself as fully offline and permissionless, yet the detected capabilities include file read/write, shell, environment access, and network. Even if some of these capabilities are only implied by examples or companion code, the lack of explicit permission disclosure is a security problem because users cannot accurately assess data exposure or execution risk before running it.
