Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill declares no permissions even though its documented behavior requires reading local files, writing outputs, using environment secrets, making network requests, and invoking ffmpeg. This is dangerous because users and orchestrators cannot accurately assess or constrain what the skill can access, which undermines consent and sandboxing expectations.
