Undeclared Tool Scope
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
The skill instructs the agent to run a bundled Python script that consumes live official datasets, implying network access, but the skill manifest does not declare any explicit tool scope or allowed-tools restriction. That mismatch can cause the agent runtime to grant broader-than-intended execution/network capability or make the skill's external access invisible to policy enforcement and review.
- Content
