Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill declares no permissions, yet its documented workflow clearly relies on environment secrets and outbound network access to a third-party API. This is dangerous because operators and users cannot accurately assess what capabilities the skill needs, undermining consent, review, and policy enforcement around secret usage and external communications.
