Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill declares no explicit permissions, yet its metadata and usage clearly require environment-variable access and outbound network access to DefiLlama APIs. This mismatch weakens security review and user consent because the effective capabilities are broader than what is formally declared, making it easier for a skill to access secrets like API keys or make unexpected external requests without clear disclosure.
