Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill instructs use of environment-based credentials, local file inputs such as `@request.json`, and outbound network access, but the skill manifest shown does not declare any permissions or capability boundaries. This creates a transparency and governance gap: an agent may read local files, access secrets, and send requests externally without an explicit permission contract, increasing the risk of unintended data exposure or over-privileged execution.
