Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill exposes operational capabilities including environment variable access, filesystem read/write, network access, and shell execution, yet does not declare permissions or constrain their use. This creates a trust-boundary problem: users and reviewers cannot accurately understand what the skill may do, and downstream scripts could access secrets, local files, or external services without explicit authorization expectations.
