Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill documentation demonstrates capabilities for file reads/writes, shell execution, and network-related operations, but no explicit permission model is declared in the metadata. That mismatch can cause consumers or platforms to underestimate the skill's effective attack surface and approve it under weaker scrutiny.
