Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation describes capabilities to read local files, optionally write output/preprocessed text, and send medical record content to an external MaaS endpoint, yet no explicit permissions are declared. This creates a real security and governance gap because operators may execute the skill without clear visibility into data access and network exfiltration behavior, which is especially sensitive in a medical-record processing context.
