Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill instructs the agent to run a local script and produce a handoff bundle, which implies file access and likely creation of output artifacts, but it does not declare any explicit tool scope such as allowed-tools or permissions. That mismatch increases the chance of overbroad agent capabilities being used implicitly, making file writes harder to audit and constrain in a workflow that operates on local portfolio data.
