Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill advertises executable CLI workflows that invoke shell commands, read local media files, write outputs, access environment-derived configuration, and make network requests, yet it declares no permissions. This creates a transparency and least-privilege problem: a user or platform may trust the skill as low-risk while it can exfiltrate local files or use networked APIs once executed.
