Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill describes and instructs use of local scripts that read and write task files and invoke shell commands (for example Python CLI usage, Ollama commands, and DSH startup), yet no permissions are declared. This creates a transparency and consent gap: a host platform or user may enable the skill without understanding that it can manipulate local files and execute local tooling, increasing the risk of unintended data exposure or command execution.
