Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill invokes shell commands, accesses local files, writes outputs, and makes network requests, yet declares no permissions or user-facing guardrails. That mismatch can cause the agent to perform sensitive actions without explicit consent or enforcement, especially when handling arbitrary URLs and local paths.
