Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation describes executable scripts that use network access and likely read credentials from environment variables or local config, yet no permissions are declared. This creates a transparency and governance problem: operators may invoke a skill believing it is low-risk metadata extraction when it can actually access external APIs and local secrets, reducing the effectiveness of permission review and sandboxing.
