Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill metadata explicitly states outbound network is false, yet the referenced implementations and analysis indicate some backends perform network communication and may call external embedding APIs. This creates a trust and sandboxing problem: operators may allow the skill under the assumption it is local-only, while it can unexpectedly transmit data to remote services.
