Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill explicitly instructs the agent to run a Playwright-based publishing script against Douyin's creator platform, which requires network access, yet the manifest does not declare any corresponding permission. This creates a permission-model mismatch that can lead to undeclared outbound access and reduces the user's ability to understand or constrain what the skill will do.
