Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation instructs users to run shell and Python commands that access environment variables and network resources, yet it declares no corresponding permissions. This creates a transparency and trust problem: users and platforms cannot accurately assess the skill's operational scope, and hidden network/env access can expose secrets such as API credentials or interact with external systems unexpectedly.
