Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill advertises and demonstrates network-backed functionality (CoinGecko, Alternative.me, Polymarket) while declaring no permissions, creating a capability/metadata mismatch. This is dangerous because users and policy engines may trust the manifest to understand runtime behavior, and undeclared outbound network access can bypass review expectations or organizational controls.
