Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation indicates use of environment variables and network access, but the manifest does not declare corresponding permissions or data-handling expectations. This is dangerous because users and orchestrators may grant or execute the skill without understanding that it reads secrets like API keys and transmits queries and URLs externally.
