Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill clearly relies on environment variables and shell execution, but the metadata does not declare corresponding permissions or capabilities. This weakens review and runtime governance because users and platforms may not understand that the skill can access secrets and invoke shell-based tooling that sends data off-host.
