Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill documentation describes concrete file read/write behavior such as consuming a user-provided template path and saving generated PPTX, previews, QA reports, and snapshots, but no declared permissions are shown. This mismatch is dangerous because it can cause the host to invoke a skill with broader filesystem access expectations than users or platform policy reviewers can see, increasing the risk of unauthorized file access or overwriting local files.
