Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs use of a shell script and cron automation but does not declare corresponding permissions or clearly scope those capabilities. Hidden or undeclared shell execution increases trust risk because importing the skill may grant more operational power than a user expects, especially when combined with posting and network actions.
