Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill includes shell-based capabilities and executable script examples using curl, grep, sed, and bash, but does not declare any permissions for shell or network access. This creates a trust and policy gap: an agent or reviewer may assume the skill is non-executing or lower-risk while it actually instructs command execution and outbound requests, increasing the chance of unintended command use or unsafe deployment.
