Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill explicitly writes extracted conversation data to an output file and also instructs cleanup of temporary files, yet it declares no permissions. That mismatch can bypass user expectations and policy controls around filesystem access, especially because the extracted content may contain sensitive conversation data.
