Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill documentation instructs users to set an API key in the environment, invoke local Python scripts, and use networked third-party APIs, but the skill declares no corresponding permissions. This creates a transparency and policy-enforcement gap: an agent or user may invoke capabilities involving secrets, outbound requests, and file/script usage without an explicit permission contract.
