Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill uses sensitive environment variables and performs networked actions, but it does not declare permissions or clearly surface those capabilities in a machine-readable way. This is dangerous because users or hosting platforms may authorize or run it without realizing it can access secrets and call remote APIs, reducing informed consent and weakening policy enforcement.
