Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill explicitly requires environment access for `AISA_API_KEY` and uses network calls to a third-party API, but it does not declare a restrictive tool scope such as `permissions` or `allowed-tools`. In agent environments, this weakens least-privilege controls and can allow broader-than-necessary execution or network capability if the host relies on manifest-declared scope.
