Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill invokes a local conversion script via `uv run`, and the script declares inline dependencies that `uv` may download automatically on first use. That means the skill has effective network and file-write capabilities despite not declaring permissions, which creates a trust and transparency gap and can expose users to unreviewed dependency retrieval or unexpected filesystem modifications.
