Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises image-generation workflows in documentation but exposes effective capabilities associated with shell execution, filesystem access, environment access, and network use without declaring permissions. This increases the attack surface because a user or downstream system may trust the skill as low-risk while it can read local data, write files, and make outbound requests during execution.
