Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 91% confidence
- Finding
- The skill instructs the agent to use environment variables, execute Python scripts, make external API calls, and write output files, yet it declares no permissions. That mismatch is a real security issue because it can cause capability creep or invisible privilege assumptions, making it harder for a caller or platform to understand and constrain what the skill will do.
