Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill declares use of an environment variable and clearly invokes an external gateway/agent service, but it does not declare permissions corresponding to secret access and outbound network use. This creates a transparency and policy-enforcement gap: hosts or users may approve/install the skill without understanding that it can read a credential and transmit user prompts to a remote service.
