Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill invokes a Python script, relies on an environment secret, and communicates with an external API, but it does not declare any explicit tool scope or allowed tools. This weakens policy enforcement and reviewability, making it easier for an agent to use network and secret-backed execution implicitly without clear consent boundaries.
