Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill invokes python scripts, performs network access to a remote API, and stores data under a local credentials path, but it does not declare corresponding permissions or clearly constrain those capabilities. This creates a trust and review gap: users and platforms may approve the skill without realizing it can access the network, shell, and local files, increasing the chance of unintended data access or command execution.
