Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises and invokes a Python script that performs network access and likely reads or writes local data, yet the skill manifest declares no permissions. This creates a transparency and policy gap: a host or user may approve the skill assuming it is low-privilege while the underlying code can still reach external services and interact with the filesystem or environment.
