Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises shell, file read, and file write behavior but does not declare permissions, which weakens transparency and informed consent. In this skill’s context, those capabilities are meaningful because it handles OAuth tokens, writes local state files, and suggests cron-based execution, so undeclared capabilities increase the chance of users authorizing sensitive behavior without realizing it.
