Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill advertises significant capabilities including shell execution, file read/write, environment access, and optional network use, but it does not declare permissions explicitly. This weakens review and sandboxing because operators may approve a seemingly simple transcription skill without realizing it can install packages, modify local files, and send transcript data to external providers. In this context the risk is elevated because the skill handles sensitive meeting/podcast audio and references credentials/environment configuration.
