Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill clearly instructs the agent to make outbound requests to the Scryfall API and includes executable command examples, yet no corresponding network permission is declared. This creates a mismatch between the skill's documented capabilities and its declared security model, which can undermine permission enforcement and user/admin expectations about external data access.
