Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill instructs the agent to read user-supplied files and write audit reports to disk via local scripts, but it does not declare corresponding permissions. That mismatch is dangerous because it obscures the skill’s effective capabilities from reviewers and policy enforcement, increasing the risk of unintended file access or overwriting data if the skill is executed in a permissive environment.
