Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill documentation describes use of environment variables for Azure tenant/client credentials, but there is no declared permission model warning that the skill accesses sensitive local configuration and secrets. This creates a transparency and consent gap: users may grant or run the skill without understanding it reads privileged env data and stores authentication material locally.
