Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
The skill clearly requires access to environment variables, shell execution, and outbound network access, but it does not declare an explicit tool/permission scope. That creates a governance gap: a host agent may grant broader capabilities than intended, making it harder to sandbox or review what the skill is allowed to do. In this context the skill is designed to send user-supplied URLs and an API key to a third-party service, so missing scope declarations materially increase operational risk even if the documented behavior appears benign.
- Content
