Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to fetch data from sre.news and open each linked article, which is network access, yet no permissions are declared. Undeclared network capability reduces transparency and can lead to unintended external requests, expanding exposure to untrusted content and making policy enforcement harder.
