Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill clearly instructs use of shell commands (`curl`, `jq`, `cdp`, temporary file handling) but does not declare permissions/capabilities accordingly. In an agent environment, undeclared shell/network use reduces transparency and can bypass operator expectations or policy gates around command execution and outbound requests.
