Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill declares file and network capabilities in prose/metadata but does not use an explicit permissions model, which weakens review and enforcement. This increases the chance that a skill with access to shared credentials and outbound network access operates with more privilege than is transparently declared to users or the platform.
