Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 82% confidence
- Finding
- The skill advertises and instructs use of file reads, network access, and shell execution, yet declares no explicit permissions or capability boundaries in the metadata. For a security-scanning skill, these capabilities are expected, but the lack of declaration reduces transparency and can cause users or tooling to underestimate what the skill can do.
