Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 76% confidence
- Finding
- The skill declares no permissions, yet its content references configuration paths and environment-backed operations that imply file-reading capability. This creates a permission-model mismatch: reviewers and policy engines may underestimate what the skill can access, which is especially risky in a cross-tenant monitoring context handling sensitive flow and leakage data.
