Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill clearly relies on environment variables and external network access, but those capabilities are not declared as permissions in a machine-readable way. That creates a transparency and policy-enforcement gap: operators and users may not realize the skill can read secrets and transmit them to a third-party API, increasing the risk of unintended credential exposure or unauthorized outbound access.
