Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill embeds executable shell commands and implies access to environment variables, local files, networking, and filesystem writes, but does not declare any permissions or capability boundaries. This creates an authorization transparency gap: a caller may invoke the skill expecting content-planning behavior while the implementation can access sensitive local resources and external services.
