Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill documentation indicates capabilities to read workspace files, access environment variables, and make network requests, but it does not declare permissions accordingly. This creates a transparency and consent problem: an agent or user may invoke the skill without understanding that local markdown content will be processed and embeddings sent to an external API endpoint.
