Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill invokes shell scripts but does not declare permissions, which hides its true execution capabilities from users and any permission-gating system. In a skill whose purpose is to expose a local service publicly, undeclared shell access materially increases risk because it can install software, edit configuration, and restart services without clear upfront disclosure.
