Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises executable workflows that use environment variables, local file access, shell commands, and network/API calls, but it does not declare permissions or narrowly scope those capabilities. This creates a transparency and least-privilege problem: a host agent or reviewer may underestimate what the skill can do, increasing the chance of unauthorized file access, outbound requests, or command execution in sensitive environments.
