Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill documentation indicates it will read a user-supplied URLs file, write scraped output to disk, and access arbitrary network locations, but no permissions are declared. That creates a transparency and policy-enforcement gap: users or orchestration systems may authorize the skill without understanding it can access local files, write content, and make outbound requests.
