Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation describes capabilities that include reading environment variables, writing local configuration, and making network requests, but it does not declare those permissions explicitly. This weakens user and platform visibility into what the skill can access, making secret handling and outbound data flow harder to audit. In this context, the risk is elevated because the skill also solicits an API key and persists it locally.
