Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises and instructs use of CLI tooling that accesses environment variables and the network, but no explicit permission model or disclosure is declared in the skill metadata. This can mislead operators about the actual execution capabilities and weakens least-privilege review, especially because the workflow includes scanning external sites and reading webhook secrets from the environment.
