Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill declares no permissions, yet the documentation instructs users to run shell commands for installation, testing, deployment, and service management. This creates a trust boundary mismatch: operators may approve the skill as low-risk while it actually relies on command execution and host-level changes, increasing the chance of unauthorized or unexpected system modification.
