Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill instructs the agent to execute a Python script that performs live network retrieval from singaporepools.com.sg, but the skill metadata does not declare any corresponding network permission. Undeclared outbound network access is a real security issue because it expands the skill's capabilities beyond what reviewers and policy controls can reliably understand, and can enable unintended data exfiltration or fetching of untrusted remote content if the implementation changes.
