Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill clearly requires network access, reads an environment secret (`SIMMER_API_KEY`), and instructs running a Python script that may persist configuration (`config.json`), yet it does not declare corresponding permissions. Undeclared capabilities weaken review and consent boundaries because an agent or platform operator may underestimate what the skill can access or modify before enabling live trading behavior.
