Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill declares powerful capabilities in prose and metadata-like fields, but the analyzer correctly notes there is no formal declared permission model covering env access, file read/write, network, and shell execution. This creates a transparency and governance gap: users or orchestrators may authorize the skill for simple audio broadcast while it can also read local config files, cache tokens on disk, and invoke system binaries.
