Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill instructs use of network access and local secret storage but does not declare permissions, which weakens transparency and policy enforcement around what the skill can access. In a system that relies on declared permissions for review or sandboxing, this can lead to overbroad execution and make sensitive transcript retrieval harder to govern.
