Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises and instructs use of shell execution, filesystem access, environment usage, and outbound network requests, yet declares no permissions. That mismatch is dangerous because it hides the true capability surface from reviewers and users, making it easier for a skill to exfiltrate secrets, modify local files, or invoke external services without explicit approval.
