Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill documentation describes capabilities that include environment variable access, local file read/write, and outbound network access, but it does not declare any permissions or constraints for those operations. This creates a transparency and least-privilege problem: an agent may invoke a skill with broader runtime access than users or reviewers expect, increasing the chance of unintended data exposure or unsafe file/network actions.
