Lp1
High
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The code accesses environment-derived paths via process.env.HOME/USERPROFILE to locate a host secret, but the declared permissions do not disclose this capability. Undeclared access to environment-based host data expands the trust boundary and can hide secret discovery behavior from reviewers and users.
