Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill documentation describes capabilities to read environment variables, read/write local files, and make outbound network requests, yet no explicit permission declaration is present. In an agent ecosystem, this creates a transparency and consent gap: users or orchestrators may grant or execute the skill without realizing it can access secrets, local data, and remote APIs, increasing the chance of unintended data exposure or unsafe execution.
