Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill requires both environment secret access (`WISE_API_TOKEN`) and outbound network access, but it does not declare an explicit tool scope such as `permissions` or `allowed-tools`. That creates an authorization ambiguity where a host may grant broader capabilities than intended, increasing the risk of secret exposure or unintended API access if the runner or surrounding environment is misconfigured.
