Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation instructs users to run local Python scripts that perform network access and write files, but the skill declares no corresponding permissions. This mismatch is dangerous because it hides the true capability surface from reviewers and runtime policy systems, increasing the chance that users execute code with broader access than expected.
