Lp1
- Category
- MCP Least Privilege
- Confidence
- 75% confidence
- Finding
The skill uses 'env' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
- Content
Security audit
Security checks for vulnerabilities and agentic risk
This skill is a disclosed ScraperSocial client for public Google data and its network/API-key use matches its stated purpose.
Install this only if you are comfortable sending search terms, business URLs or handles, and your ScraperSocial API key to ScraperSocial. Use limits because API calls consume credits.
The skill uses 'env' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
The skill uses 'network' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
The skill uses 'shell' capability that is not listed in its permissions. This may indicate deceptive intent or missing permission declarations.
This code performs outbound HTTP requests and sends the bearer API key in the Authorization header. While the comments describe implementation details, there is no user-facing prompt or explicit disclosure in the runtime output here that requests and credentials are being sent to a remote service.
Detected: suspicious.env_credential_access