Credential Access
High
- Category
- Privilege Escalation
- Content
one who configured it — an installed app with many users, not a personal agent. OAuth 2.1 against `mcp.askmiles.ai`, scope `miles:chat`, with dynamic client registration. The grant belongs to the Miles account of the person who approves it, and requires a one-time browser consent. Access tokens expire after one hour — store the refresh token and refresh. **Getting a token — follow this recipe, don't improvise.** In particular, do
- Confidence
- 70% confidence
- Finding
- Code accesses credential files (SSH keys, AWS credentials, etc.). This could indicate credential theft attempts.
