Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill advertises email access over IMAP and references a local config containing an authorization token, which implies network access and secret handling without any declared permission boundary. That mismatch is dangerous because an agent or user may invoke a capability that can access sensitive mailbox data without clear consent, review, or sandbox expectations.
