Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill explicitly instructs the agent to install dependencies and invoke Python code that calls Yahoo Finance-backed tooling, which implies network access, yet no permissions are declared. This creates a transparency and policy-enforcement gap: an agent or platform may treat the skill as lower risk than it is and allow outbound requests without informed consent or proper sandboxing.
