Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documents executable workflows that use shell commands, local files, environment variables, and networked API access, but it does not declare those capabilities/permissions explicitly. This weakens user consent and sandbox policy enforcement because consumers may treat the skill as documentation-only while it actually supports credentialed API calls, file I/O, and task/result retrieval.
