Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill clearly enables network-impacting operations such as traffic capture, proxying, replay against target URLs, cloud push/pull, and MCP server startup, yet only declares a binary requirement and no corresponding permissions or safety constraints. This can cause the agent to invoke a capability that intercepts or transmits sensitive traffic without explicit user awareness or policy gating.
