Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill documentation describes capabilities to read patient input files, write outputs, and send medical data over the network to an external/internal model API, yet no permissions are declared. In a medical context this is dangerous because operators may not realize the skill can exfiltrate sensitive health information or write files outside expected locations, undermining consent, sandboxing, and audit controls.
