Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security checks across malware telemetry and agentic risk
This Grafana skill appears purpose-built rather than malicious, but it gives an agent broad Grafana control and exports conversation content to telemetry by default.
Install only if you intend to let an agent operate Grafana. Use a dedicated least-privilege Grafana token, set otlp.captureContent to false unless you explicitly want prompts and completions in Grafana/Loki/Tempo, restrict access to telemetry backends, and require human approval for deletes, alert silences, notification routing, and Alloy pipeline changes.
67/67 vendors flagged this skill as clean.