Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill metadata declares runtime requirements and the documentation clearly describes capabilities including environment-variable access, file reads/writes, network API calls, and shell execution, yet no explicit permissions model is declared. This creates a transparency and governance gap: users or orchestrators may under-scope the skill's access, increasing the chance of unintended secret exposure, filesystem access, or command execution during use.
