Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill declares use of environment-based secrets via `XAI_API_KEY` but does not define an explicit tool/permission scope such as `permissions` or `allowed-tools`. That weakens least-privilege controls and makes the skill's runtime capabilities less transparent to users and hosting frameworks, increasing the risk of unintended secret access or broader execution than expected.
