Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill metadata declares no env/config requirements, but the described tooling and detected capabilities indicate broad operational access including shell, file I/O, network, and env handling. This mismatch is risky because users and policy engines may underestimate what the skill can do, weakening least-privilege review and making abuse harder to spot.
