Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 70% confidence
- Finding
- Without declared permissions the skill's intent is opaque and cannot be validated.
Security audit
Security checks across malware telemetry and agentic risk
This skill is mainly a local receipt verifier, but review is warranted because a registry override can silently change the trust root used for security decisions.
Install only if you need SAR receipt verification. Prefer the default offline verifier with the bundled registry; do not set SAR_KEYS_REGISTRY_PATH unless you independently trust and verify that registry. Remote issuance sends the task ID, acceptance spec, and output you provide to defaultverifier.com, so avoid it for sensitive outputs.
`checks` array, not the retired `{"expected": ...}` form.
```bash
curl -sS https://defaultverifier.com/settlement-witness/attest \
-H "Content-Type: application/json" \
-H "Authorization: Bearer $SETTLEMENT_ATTEST_API_KEY" \
-H "X-Settlement-Timestamp: $(date +%s)" \65/65 vendors flagged this skill as clean.
No suspicious patterns detected.