Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs the agent to perform network access and write downloaded PDFs to disk, but no explicit permissions are declared. That mismatch is a real security governance issue because users or hosting systems cannot accurately reason about what the skill is allowed to do, and an agent may execute broader actions than expected. In context, the functionality legitimately requires network and file-write capabilities, which makes the behavior expected, but the lack of declaration still weakens transparency and policy enforcement.
