Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill instructs the agent to install packages with npm, invoke CLI commands that perform OAuth, and interact with remote Feishu/Lark services, but the skill metadata does not declare any permissions for network or command execution. This mismatch is dangerous because a host platform may rely on declared permissions to gate risky behavior; an undeclared network-capable setup skill can cause users or agents to perform external operations without explicit policy review.
