Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill instructs users to provide and store sensitive credentials such as `SIMMER_API_KEY` and `WALLET_PRIVATE_KEY`, and it performs outbound API calls, but it does not declare any permissions or explicitly bound those capabilities. In an agent ecosystem, undeclared environment and network access weakens reviewability and can lead to over-privileged execution or secret exposure through downstream tools and prompts.
