Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill advertises executable Node.js commands and uses environment variables plus network access, but it does not declare any explicit tool scope or permissions. This creates a capability-transparency gap: an agent or reviewer may invoke the skill without realizing it performs outbound network operations and reads environment-controlled paths, increasing the risk of unintended data exposure or policy bypass.
