Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill advertises an offline local image-processing workflow, yet the analyzed capabilities indicate access to environment variables, file I/O, shell execution, and network. That gap creates an unnecessary trust boundary expansion: a user may run the skill expecting only local numeric processing while it can access secrets and external systems. In a security review, undeclared sensitive capabilities are dangerous because they can enable data exfiltration or unintended system interaction without informed consent.
