Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to read files, use bundled scripts, and run a workflow that implies shell, file read/write, and possibly environment access, but it does not declare those permissions explicitly. This creates a permission-transparency gap: reviewers and enforcement layers may underestimate the skill's operational reach, increasing the risk of unintended file access, script execution, or secret exposure in a content-publishing workflow.
