Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill advertises automatic access to an external service and mentions environment-variable/API-key usage, yet the package declares no explicit permissions. That creates a transparency and policy-enforcement gap: users and platforms cannot easily assess that the skill may read credentials, contact remote endpoints, and potentially write generated reports or artifacts. In a data-retrieval skill that handles third-party account data, hidden capability scope increases the risk of unintended data exposure or unauthorized outbound access.
