Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill requires access to sensitive environment variables and executes Node/shell-capable behavior, but it does not declare explicit permissions governing those capabilities. That creates a security gap where a user or platform may not have clear visibility into what privileged actions the skill can perform, increasing the chance of unintended token use or API actions such as triggering remote workflows.
