Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill clearly performs sensitive actions—reading local files, writing tokens/results, accessing environment/proxy settings, and making outbound network requests—but does not declare any permissions. That creates a transparency and policy-enforcement gap: an agent or reviewer may invoke the skill without understanding its true access scope, increasing the chance of unintended data access or exfiltration.
