Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to run audit and fix scripts and to mark onboarding complete, which implies file read/write behavior, but it does not declare any permissions or safety boundaries for those capabilities. This can lead to unexpected modification of skill files or state during troubleshooting, especially because the skill also promotes auto-remediation flows.
