Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill clearly relies on environment secrets and outbound network access, yet it does not declare explicit permissions for those capabilities in the skill metadata. That weakens transparency and permission gating, making it easier for a user or host system to underestimate the skill's access to API keys and remote services. In this context, the risk is elevated because the workflow explicitly asks for an API key and sends it to an external service.
