Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 85% confidence
- Finding
- The skill declares no permissions, yet its documented behavior explicitly relies on environment-variable access and reading/writing a local append-only log file. This mismatch is dangerous because it hides the skill's real capabilities from operators and policy systems, making it easier to deploy in contexts where file or environment access should be reviewed or denied.
