Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill declares no required permissions or environment access, yet its documented operation and direct CLI usage imply local file reads and shell execution via `python3 .../scan.py <path>`. This mismatch can mislead users and any permission-gating system about the skill's real capabilities, reducing transparency and weakening install-time trust decisions.
