Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill instructs the agent to use shell commands, network access, file reads/writes, and environment-dependent behavior, yet it declares no permissions or capability boundaries. This creates a mismatch between what the skill can do and what reviewers or policy engines may expect, increasing the risk of unauthorized command execution, secret access, or filesystem changes without explicit governance.
