Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill invokes a Node script that calls the external Neta API and therefore has network capability, but the manifest does not declare corresponding permissions. This creates a transparency and policy-enforcement gap: users and platforms may not realize the skill transmits prompts and API tokens off-box, which can expose sensitive input or bypass expected permission review.
