Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill declares required environment variables and clearly relies on network access, but it does not present an explicit permissions model or user-facing disclosure that it will send prompts, queries, and URLs to a third-party API. That creates a real transparency and consent gap: agents may invoke it with sensitive user data under the assumption it is just a local search helper.
