Lp1
- Category
- MCP Least Privilege
- Confidence
- 75% confidence
- Finding
The skill uses 'env' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
- Content
Security audit
Security checks for vulnerabilities and agentic risk
This is a disclosed, read-only GitHub data wrapper that sends a ScraperSocial API key to ScraperSocial and shows no hidden persistence or destructive behavior.
Install only if you are comfortable giving this skill access to your ScraperSocial API key and spending ScraperSocial credits for public GitHub lookups. It does not appear to access private repositories or write to GitHub, but GitHub's official API may be a better fit if you do not need ScraperSocial's unified client.
The skill uses 'env' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
The skill uses 'network' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
The skill uses 'shell' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
This code performs network requests and sends a bearer token in the Authorization header, which is a safety-relevant operation for a code file. Although comments describe implementation details, there is no user-facing confirmation, prompt, or disclosure at the point of execution explaining that requests and credentials will be sent to the remote API.
Detected: suspicious.env_credential_access