Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill advertises no declared permissions, yet its documented behavior includes reading local files, writing output files, and sending medical-record content over the network to a remote API. This creates a real capability-transparency and data-governance issue: users or platforms may authorize the skill under false assumptions, which is especially dangerous because the processed data is clinical text and may contain sensitive health information.
