Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill describes capabilities to read environment variables, access credential files, write token files, and make network calls, but it does not declare permissions or prominently constrain those operations. That creates a transparency and governance gap: an agent or platform may invoke a skill with broader access than the user expects, especially because it can modify external state by creating Spotify playlists and persisting tokens.
