Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill advertises operational behavior that clearly requires environment access, local file read/write, and network access, but it does not declare any permissions. Undeclared capabilities are dangerous because they hide the actual trust boundary from reviewers and operators, making it easier for the skill to access credentials, persist data, and communicate externally without explicit approval.
