Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to read and write local files and execute shell commands, but no permissions are declared to constrain or make those capabilities explicit. This creates a real security and governance gap: an agent may access or modify project files or run local tooling without transparent scoping, increasing the chance of unintended file access, destructive operations, or execution in the wrong workspace.
