Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation indicates access to environment variables, local files, file writes, and network services, but no permissions are explicitly declared. That creates a transparency and consent problem: users and hosting platforms cannot accurately assess what the skill will access before execution. In this context, the risk is amplified because the workflow handles API keys and transmits collected content to third-party services.
