Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill declares itself as a simple recipe service, yet the documented behavior implies access to environment variables, local file read/write, and network operations without any explicit permission declaration or user-facing disclosure. This increases the risk of over-privileged execution and hidden data handling, especially because the skill also collects and persists credentials.
