Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill declares no explicit permissions, yet its documented behavior clearly requires network access, environment-variable access to `OPENAI_API_KEY`, and file writes for generated images, JSON, and HTML output. This mismatch is dangerous because users and policy engines may grant or review the skill under false assumptions, reducing transparency around API-key use, outbound requests, and local artifact creation.
