Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises and references file-reading and file-writing capable scripts without declaring corresponding permissions, which creates a hidden capability boundary mismatch. In agent ecosystems, undeclared I/O is dangerous because reviewers and orchestrators may treat the skill as low-risk reasoning guidance while it can actually access or persist local data.
