Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation exposes capabilities to read local project files, write output files, and invoke shell-based scripts, yet no explicit permissions are declared. This creates a trust gap where an agent or user may underestimate the skill’s access and side effects, especially since the examples include writing artifacts and invoking helper scripts.
