Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documentation describes use of environment variables, reading image inputs, and writing outputs/cache files, but no permissions are declared to make those capabilities explicit. This is dangerous because it obscures the skill's actual access requirements and can mislead reviewers or users about what data the skill can read, write, or exfiltrate via configured API credentials.
