Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises executable capabilities including environment access, file read/write, network, and shell usage, yet declares no permissions. This weakens reviewability and consent because operators and users cannot accurately assess what the skill may access or modify before use. In this context, networked image-generation commands, local config storage, and shell invocation increase the chance of unintended data exposure or misuse of local resources.
