Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill exposes code paths that use environment variables, file read/write, network access, and shell execution, but it declares no permissions or capability boundaries. That mismatch is dangerous because consumers and orchestrators cannot accurately assess or sandbox the skill, increasing the chance of unintended credential access, local file exposure, or execution of external commands during normal use.
