Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill explicitly instructs users to run `scripts/moderate.sh`, which requires shell execution capability, but no corresponding permission declaration is documented. In agent environments that rely on declared permissions for policy enforcement or user consent, this mismatch can cause the skill to be used with broader execution capability than users or the platform expect.
