Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill exposes capabilities to read environment variables, read/write local files, and make network requests, yet the documentation does not declare permissions or clearly communicate these actions to users. In this context, that matters because the skill explicitly collects an API key, persists it locally, and sends requests to a third-party service, so the undeclared capabilities reduce transparency and informed consent.
