Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill documentation indicates capabilities to access environment variables, read/write local files, and make network requests, yet it declares no permissions. This creates a transparency and policy-enforcement gap: users and the host platform may not realize the skill can persist secrets locally and transmit data externally. In this context, the danger is elevated because the skill explicitly requests an API key and sends image data to an outside service.
