Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill explicitly requires outbound HTTPS access and invokes a local Python script that writes an output file, but it does not declare corresponding permissions in a structured permission model. This creates a capability/permission mismatch that can lead reviewers or runtime policy systems to underestimate what the skill can do, especially since network access and shell/script execution are central to its operation.
