Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill declares no permissions while explicitly handling environment-backed secrets and key-related operations. That mismatch reduces transparency and weakens review controls, making it easier for a high-risk skill to be installed or invoked without appropriate scrutiny.
