Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill invokes extensive shell commands and scripts but does not declare permissions or clearly constrain what the shell capability may do. This creates a gap between the agent's apparent authority and its actual ability to modify cloud resources, making review, policy enforcement, and user consent weaker.
