Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill clearly instructs use of shell commands, local file reads, and local state/manifest writes, but the metadata shown in this file does not declare corresponding permissions. That mismatch is a real security issue because operators and policy systems may underestimate the skill's capabilities, especially given it targets a live commerce system and supports batch publishing and other state-changing operations.
