Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises shell-based execution through bash scripts but does not declare any corresponding permissions, which creates a mismatch between the documented capabilities and the declared security model. In practice, this can cause users or orchestration systems to invoke shell commands without appropriate review, increasing the risk of command execution, network access, and handling of sensitive environment variables such as SKILLBOSS_API_KEY.
