Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill instructs the agent to read environment variables, inspect local files such as AGENTS.md, and make outbound network requests, but it does not declare these capabilities as permissions. This creates a transparency and consent problem: users may invoke the skill without realizing it can access local context and transmit data externally.
