Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises a controlled asset export pipeline but declares no permissions while static analysis detected file read, file write, and network-capable behavior. In a workflow handling brand/design assets, those capabilities can enable silent local copying and external exfiltration of sensitive files without an explicit permission boundary, which is especially risky given the governance-heavy language but absence of concrete technical restrictions.
