Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill clearly uses environment variables, local file access, file writes, and outbound network access to send documents to an external API, yet it does not declare corresponding permissions. This undermines user and platform transparency, making potentially sensitive financial documents exfiltratable under a skill that appears less privileged than it really is.
