Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill advertises executable commands and operational capabilities including shell execution, filesystem access, environment-variable use, and outbound network access, but it does not declare permissions. This creates a transparency and trust problem: users and enforcement layers cannot accurately assess what the skill can do, and hidden capability scope increases the risk of unauthorized key handling, file modification, or network exfiltration if the underlying script is unsafe.
