Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill declares a trivial local poem-output purpose, but its documentation describes undeclared access to environment variables, filesystem state, and remote network services. This hidden capability expansion is dangerous because it can exfiltrate credentials, forward arbitrary user input to external services, and perform actions users did not consent to.
