Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill declares access to sensitive resources via environment variables, local file reads/writes, and network APIs, but does not explicitly declare permissions. This undermines least-privilege review and can cause operators to run a skill without understanding that it can access API keys, persist local state, and communicate externally. In a trading skill that can run live with a wallet private key, hidden capabilities materially increase operational risk.
