Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill instructs the agent to read an environment variable, access local files, write multiple output artifacts, and make outbound network requests, yet it does not declare permissions. This creates a trust and consent gap: a user or platform may not realize the skill can access sensitive local resources and external services, increasing the risk of unintended data exposure or over-broad execution.
