Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 82% confidence
- Finding
- The skill documentation advertises and demonstrates capabilities that imply access to environment variables, files, network services, and shell execution, but no declared permissions are presented alongside them. This creates a transparency and trust problem: users may install or invoke the skill without understanding its actual access surface, increasing the chance of unintended data exposure or unsafe execution in agent runtimes.
