Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill advertises and demonstrates shell execution, environment-variable access, file I/O, and network/API usage, but does not declare any permissions or capability boundaries. This is dangerous because users and hosting platforms cannot accurately assess what the skill can access, increasing the risk of over-privileged execution, unsafe secret handling, and unintended local or network side effects.
