Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill requires sensitive environment variables but does not declare an explicit tool scope or permissions boundary, which weakens least-privilege controls and makes secret access implicit rather than auditable. In an agent setting, this can allow broader-than-expected access to API credentials and increase the chance of unauthorized posting or actions on external services if the skill is invoked in an unsafe context.
