Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill explicitly describes network-dependent discovery, readiness inspection, and execution planning, but it does not declare corresponding permissions. That mismatch weakens the platform's trust and review model because operators may believe the skill is more constrained than it really is, increasing the chance of unintended external calls or data exfiltration through undeclared network use.
