Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill advertises substantial capabilities including environment-variable access, file I/O, and networked Twitter/X automation, but does not declare permissions or capability boundaries in the skill manifest. This reduces transparency for reviewers and users, making it easier for sensitive actions like cookie handling, local data persistence, and outbound requests to occur without explicit acknowledgement.
