Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation indicates capabilities to read environment variables, read/write local files, and perform network access, yet no explicit permissions are declared. This weakens user and platform visibility into sensitive operations, especially because the workflow includes reading credentials and persisting an API key to local configuration. In a skill that can contact arbitrary servers, undeclared capabilities materially increase risk.
