Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill documentation indicates network access and local file/database writes, but the manifest does not declare corresponding permissions or capabilities. This mismatch undermines trust and reviewability because operators may approve the skill based on incomplete metadata while it still performs outbound requests and persistent local writes.
