Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation describes use of environment variables and outbound network access, but the skill has no declared permissions to match those capabilities. This creates a trust and review gap: operators may approve or install the skill without realizing it can access credentials and contact external services, which increases the risk of secret exposure, unexpected data egress, or unauthorized live-trading actions if the implementation exceeds expectations.
