Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill declares no permissions while its documented behavior clearly requires environment access, network communication, shell/package execution, and access to a local Solana keypair file. This under-declaration weakens review and consent boundaries, making sensitive operations appear less risky than they are.
