Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill invokes a local Python script that likely reads environment variables and performs file reads/writes, but the skill declares no permissions or capability requirements beyond `python3`. This creates a transparency and least-privilege issue: users and the platform may not realize the skill can access local cost/balance data or environment-backed credentials, increasing the chance of unauthorized data exposure or unintended file modification.
