Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill invokes local Python scripts, installs dependencies, reads product reference files, may write outputs, uses shell execution, and explicitly sends authentication and task requests to a remote API, yet no permissions are declared. This creates a transparency and consent problem: a user or platform may underestimate the skill's ability to access files, run commands, and communicate over the network, which increases the risk of unintended data exposure or unsafe execution in an agent environment.
