Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 96% confidence
- Finding
- The skill documentation declares compatibility and required config/env inputs, but it does not declare permissions despite clearly requiring network access and environment/config secret handling. This creates a trust gap: users may run a skill that sends prompts and uses API credentials without an explicit permission boundary or informed consent.
