Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security checks across malware telemetry and agentic risk
This skill is a small, coherent Alibaba Qwen LiveTranslate helper, with the main caveat that saved translation artifacts may contain sensitive speech or transcript data.
Before installing, be aware that any saved request payloads, transcripts, translations, or response summaries under the output directory may contain sensitive meeting or call content. Store them only where appropriate, redact or delete them when no longer needed, and handle any separate Alibaba Cloud credentials outside this skill with normal secret-management care.
66/66 vendors flagged this skill as clean.