Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill documentation indicates capabilities to read files, write output, and make network requests, but no explicit permissions are declared. This creates a security and governance gap: callers and reviewers cannot accurately assess what the skill may access or transmit, which is especially sensitive here because the skill processes medical/claims material and sends prompts to an internal model endpoint. The context makes this more dangerous because the data may include OCRed records and health information, so undeclared network and file capabilities increase confidentiality and compliance risk.
