Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill describes access to environment variables, local file read/write, and shell execution, yet declares no permissions or user-consent boundaries. That mismatch is dangerous because the workflow includes packaging local content, generating files, and publishing to an external service using an API token, which can lead to unintended data exposure or filesystem modification without clear disclosure.
