Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 84% confidence
- Finding
- The skill clearly enables network-capable operations through the New Relic CLI and documents both read and write workflows against the New Relic API, but it does not declare an explicit tool scope such as allowed-tools or permissions. Without a declared scope, an agent runtime may grant broader-than-intended command or network access, increasing the chance of unauthorized API calls, data exfiltration, or unreviewed state-changing actions like alert or deployment modifications.
