Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill declares operational capabilities that rely on environment variables and networked identity/payment flows, but does not declare corresponding permissions. That mismatch can lead users or orchestration systems to grant the skill more access than is visible from the manifest, undermining least-privilege review and increasing the chance of unintended secret or network use. In this context, the skill handles identity material and signing flows, so hidden capability surface is more sensitive than for a generic utility skill.
