Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill advertises network access to MoltShell/Replicate and use of an environment variable API key, but the metadata shown does not declare corresponding permissions. Undeclared capabilities weaken operator visibility and consent, making it easier for a skill to exfiltrate data or use secrets unexpectedly once installed.
