Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill documentation describes capabilities to make network requests to a public API and to read/write local JSON files under ~/.polymarket/, but the manifest declares no explicit permissions. This creates a permission-transparency issue: users and policy engines may not be able to accurately assess or enforce what the skill can access, even though the described behavior appears aligned with the skill's stated purpose and not overtly malicious.
