Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill explicitly documents network communication with an Ollama server via `ollamaBaseUrl`, but no permissions declaration is described despite requiring network capability. This creates a trust and review gap: operators may assume the skill is local-only while it can transmit prompts and indexed document contents over HTTP, especially if misconfigured to a remote host.
