Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill clearly instructs users to clone, install, and run Python code that makes outbound HTTP requests to TSE and CKAN endpoints, but the manifest does not declare any explicit tool scope such as network permissions. This weakens security review and policy enforcement because consumers cannot easily see or constrain the skill's external connectivity, increasing the chance of unintended or over-broad network use.
