Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill advertises and demonstrates capabilities that access environment variables, local files, shell tools, and the network, but no explicit permissions are declared. This creates a transparency and consent gap: operators may approve or invoke the skill without understanding that it can read local assets, write outputs, execute ffmpeg/python commands, and transmit data to remote services, increasing the risk of unintended data exposure or unsafe execution.
