Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill clearly instructs users to run shell commands (`python3 ...`) and install Playwright, but it does not declare corresponding permissions. Undeclared shell capability weakens policy enforcement and review because operators may underestimate that the skill can launch local scripts with browser and filesystem side effects.
