Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill exposes operational capabilities including environment variable access, filesystem reads/writes, shell execution, and network access without declaring permissions or constraining their use. This is dangerous because users and hosting platforms may treat the skill as low-risk duplicate checking while it can actually invoke external services, process local files, and run commands, increasing the chance of secret exposure, unintended file access, or command misuse.
