Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation clearly instructs execution of shell scripts and references reading and writing local state files, yet the metadata shown does not declare any permissions. That creates a transparency and consent problem: an agent or user may invoke the skill without understanding it can modify workspace files such as memory/gene-state.json and gene-metrics.log.
