Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises operational capabilities that imply environment-variable access, MCP integration, and shell execution, yet it declares no permissions. This mismatch is dangerous because it can bypass user/admin expectations and enable execution paths or secret access that were not explicitly consented to or sandboxed.
