Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill advertises network-monitoring functionality and the analyzer detected file_read and network-related capabilities, but the manifest declares no permissions. That mismatch is dangerous because it prevents users and policy engines from understanding the skill's actual access needs, increasing the chance of over-trust and silent access to sensitive traffic metadata or local files.
