Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill advertises no declared permissions while the documented behavior and analyzer indicate environment access, network use, and shell-capable operations. This is dangerous because users and tooling may grant trust based on incomplete declarations, even though the skill reads local token material and interacts with local services and filesystems.
