Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill exposes shell, filesystem, environment, and network-capable execution patterns in SKILL.md but does not declare permissions or capability boundaries. This is dangerous because operators and policy layers cannot accurately assess what the skill can access, enabling unexpected data access, outbound requests, or command execution if the referenced script is broader than the stated video workflow.
