Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill instructs the agent to read local files, write extracted and rendered resume artifacts, open browser previews, and reference external web fonts, but it declares no permissions or trust boundaries. That creates an authorization gap where users and hosts may not realize the skill can access and persist sensitive resume data or trigger network fetches during rendering/viewing.
