Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 78% confidence
- Finding
- The skill documentation and metadata indicate access to environment variables, file reads/writes, shell execution, and optional networked model endpoints, yet no explicit permissions are declared. That creates an authorization gap where a host or reviewer may underestimate the skill's effective capabilities, increasing the chance of overbroad execution or unsafe deployment.
