Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill declares no permissions, yet the associated capabilities indicate access to environment variables, local file I/O, shell execution, network, and file writes. This creates an unsafe trust boundary because users may invoke what appears to be a simple offline geometry tool while granting far broader access than documented, enabling unintended data access or exfiltration if the implementation uses those capabilities.
