Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs the agent to use network access, local file storage, and shell-based Python helpers, but it does not declare permissions or narrowly scope those capabilities. This creates a trust and transparency gap: an agent/runtime may grant broader access than users expect, and adversarial modifications to helper scripts or local-state handling could lead to unintended file access, command execution, or data exposure.
