Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises runnable scripts that use environment variables, local file I/O, shell execution, and network access, yet no permissions are declared. This creates a transparency and policy-enforcement gap: operators and users cannot accurately assess what the skill can do, and a downstream agent may execute broader capabilities than expected, including writing files or making external API calls.
