Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documentation describes capabilities that handle environment-stored credentials, write files via cron/logging/workflow setup, and access an external API, yet it declares no permissions or trust boundaries. This can mislead users and hosting platforms about what the skill will access, reducing informed consent and making misuse of tokens or local system resources harder to detect.
