Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to read multiple local files such as references, assets, and scripts, which is a form of file-reading capability, but no explicit permission declaration is present. In an agent framework, undeclared file access can expand the skill's trust boundary and may allow unintended access to workspace contents if file resolution is not tightly sandboxed.
