Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill advertises executable capabilities via `python3` and instructs users to run local scripts, but it declares no explicit permissions despite clearly implying file read/write behavior through contract input processing and report output generation. This creates a transparency and least-privilege problem: users or hosting platforms may not realize the skill can access local files or generate artifacts, increasing the chance of unintended data exposure when reviewing sensitive lease documents.
