Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
The skill declares no explicit tool scope or permissions, yet its documented behavior implies local file read/write (
complaints.json, evidence references) and potential network-enabled actions such as regulator routing or sending escalation content. Without an allowlist, an agent runtime may grant broader capabilities than necessary, increasing the risk of unintended file access or outbound communication if the skill is invoked in a permissive environment.- Content
