Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to run shell commands and use environment-driven tooling (`npm install`, `tcb`, `node` upload scripts) but does not declare any permissions or constraints for those capabilities. In an agent setting, undeclared shell/env access weakens security review and can enable command execution or secret exposure without clear user visibility.
