Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill documentation exposes capabilities for environment access, file read/write, network access, and shell execution, but does not declare permissions or clearly constrain them. In an agent setting, this reduces transparency and can cause the skill to be invoked with broader authority than users or policy expect, increasing the risk of credential exposure, unintended file modification, or arbitrary external requests.
