Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill declares no permissions, yet its documented behavior implies reading user-specified Markdown files and fetching or embedding image resources, which introduces filesystem read and network access capabilities. Missing permission declarations are dangerous because they hide the true trust boundary from the agent/runtime and can enable unintended data access or exfiltration through referenced resources.
