Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill exposes shell-capable installation and usage flows (`curl`, `docker`, `cargo`) but does not declare corresponding permissions. This can mislead hosts and users about the skill's operational power, especially because the skill also interfaces with a wallet capable of moving funds.
