Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill declares no permissions, yet its documented behavior clearly depends on environment variables and external model APIs, implying env and network access. This mismatch can mislead reviewers and operators about the skill's actual capabilities, weakening sandboxing, approval, and trust boundaries.
