Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 83% confidence
- Finding
- The skill declares no permissions, yet its documented tooling invokes a local script and interacts with an external service, implying environment and network capabilities beyond what is transparently disclosed. This weakens the trust boundary for users and reviewers, because the skill can access external resources and runtime state without explicit permission declarations.
