Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill invokes local Python scripts, installs a package, uses shell commands, and the analyzer indicates file, environment, and network capabilities, yet no permissions are declared. This creates a trust gap: users may authorize or run the skill without understanding that it can access local resources and make outbound requests, increasing the chance of unintended data exposure or unsafe execution.
