Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill can access environment secrets, read/write files, invoke shell commands, and reach IMAP/SMTP over the network, yet no explicit permission declaration is present. That mismatch is dangerous because it obscures the true trust boundary for a high-risk skill that handles mailbox contents and send capability, making accidental overexposure or unsafe deployment more likely.
