Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill invokes shell commands, performs network access, reads environment-derived paths, and writes a local config file, yet it declares no permissions or trust boundaries. This is dangerous because users and host systems cannot accurately assess or constrain what the skill can do, increasing the risk of unintended key storage, external data transmission, or broader tool misuse.
