Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill clearly performs network operations and may access environment-derived configuration, yet it declares no explicit permissions. This creates a transparency and policy-enforcement gap: an agent or platform may invoke a skill with broader effective capabilities than reviewers or users expect, especially given it downloads binaries, fetches subscription URLs, and manages proxy configuration. In this context, proxy-management is inherently sensitive because it can route traffic through third-party infrastructure and handle credential-bearing subscription links.
