Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill documentation advertises network access and file output/redirection behavior, but the manifest does not declare corresponding permissions. Undeclared capabilities weaken trust boundaries for the agent/runtime because users and policy systems cannot accurately assess that the skill can contact external services and write data to disk.
