Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill documentation exposes capabilities that imply local file read/write and outbound network access, but it does not declare any tool scope or permission boundaries. In an agent environment, this can lead to over-privileged execution where integrators or users cannot easily assess or constrain what the skill may access, increasing the risk of unintended data access or exfiltration.
