Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill describes and instructs use of capabilities including shell execution, network access, reading environment variables, and reading/writing local files, but it does not declare permissions. That mismatch is dangerous because users and enforcement systems cannot accurately assess or constrain what the skill can access, increasing the chance of unintended credential exposure, filesystem modification, or outbound messaging abuse.
