Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 82% confidence
- Finding
- The skill advertises multiple network-dependent capabilities such as real-time gas estimation and on-chain analytics, but the manifest does not declare corresponding permissions. This creates a permission-transparency gap: operators may approve or run the skill without understanding that it performs outbound network access, which weakens sandboxing, review, and trust controls.
