Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs the agent to browse multiple external websites and fetch market data, which is a network-capable behavior, but the skill metadata does not declare any corresponding permissions or constraints. Undeclared network access weakens reviewability and policy enforcement, making it easier for a skill to exfiltrate prompts, collect unvetted content, or access unexpected domains without transparent consent.
