Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill performs sensitive operations using environment variables, network access, and documented command execution (`npx tsx ...`), but no explicit permission declaration is present. In an agent setting, this can cause the skill to be granted broader implicit capabilities than intended, making secret access and transaction-capable network actions less visible to operators and policy controls.
