Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill embeds executable workflows that use environment variables, filesystem access, shell commands, and network calls, yet it declares no permissions or capability boundaries. This is dangerous because users or host systems may invoke code with broader access than expected, increasing the risk of secret exposure, unintended file modification, or unreviewed outbound requests.
