Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation describes use of environment-based secrets (`GEMINI_API_KEY`) and command execution, but the metadata declares no permissions. That mismatch can cause the platform or reviewers to underestimate the skill's access to sensitive data and execution capabilities, which weakens trust boundaries and auditing. In this context, the skill is operationally capable of touching secrets from the environment, so undeclared capability is a real security issue.
