Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill uses sensitive capabilities (environment access for API keys and outbound network access) but does not declare permissions or clearly constrain them. In an agent ecosystem, this weakens security review and user consent because the skill can access secrets and transmit data externally without an explicit permission boundary.
