Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to execute multiple shell scripts (`scaffold.sh`, `validate.sh`, `security-scan.sh`, `publish.sh`) but does not declare corresponding permissions. Undeclared shell capability weakens review and policy enforcement because a caller may not realize the skill can run local commands that modify files or publish artifacts.
