Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation indicates capabilities to read local files, invoke Python from the shell, and send data over the network, but it does not declare permissions or clearly scope those capabilities. This can lead to overbroad agent execution where local user files are transmitted to a third-party API without an explicit permission boundary or user consent model.
