Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill invokes Python, reads an API key from environment/config, and makes outbound requests to xAI, but it does not declare an explicit tool scope such as permissions or allowed-tools. That weakens least-privilege controls and makes the skill's capabilities less transparent to the host and user, increasing the chance of unintended execution with broader access than necessary.
