Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill documents and instructs use of capabilities that touch environment variables, networked RPC/API access, and shell execution (`npm install`, `npx tsx ...`) while declaring no permissions. That mismatch undermines least-privilege controls and can cause an agent or reviewer to authorize a skill without understanding its real execution and data-access surface, which is especially risky because the skill handles wallet credentials and on-chain funds.
