Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill metadata declares OpenClaw runtime requirements and clearly describes capabilities to read/write files, access environment variables, make network requests, and invoke shell-based setup commands, but it does not declare an explicit permissions model covering those capabilities. This creates a transparency and review gap: operators may install the skill without understanding its effective access to secrets, persistent data, and external services, which increases the risk of over-privileged deployment or unsafe trust assumptions.
