Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 77% confidence
- Finding
- The skill exposes shell-executable commands and appears capable of reading local system state, yet it declares no explicit permissions. That creates a trust and review gap: users or orchestrators may invoke hardware detection and shell commands without realizing the skill needs elevated capabilities, increasing the chance of unintended command execution or host data exposure.
