Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation indicates use of environment variables and outbound network access, but no explicit permissions are declared. This creates a governance and least-privilege gap: the runtime may grant broader capabilities than users or reviewers expect, and the fallback to reading a local appian.json file increases the chance of unintentionally accessing sensitive credentials from disk. In a deployment-monitoring skill, network and secret access are expected functionally, but they still must be explicitly declared to prevent hidden capability creep.
