Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill advertises executable Python components plus optional OpenAI/Anthropic access and file-based inputs, but the metadata shown does not declare any permissions or boundaries for file reads or network use. That creates a real security gap: reviewers and hosts cannot tell whether the skill may read arbitrary local files or send article contents to external APIs, which is especially risky because user-supplied articles may contain sensitive or proprietary text.
