Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill instructs users to run a local Python script that can read files, write outputs, access environment variables and API keys, make network requests, and invoke shell commands, yet no permissions are declared. This creates a transparency and trust gap: users may invoke the skill without understanding that it can access local paths, stored credentials, and external services, increasing the risk of unintended data exposure or unsafe execution.
