Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill clearly relies on sensitive capabilities: it reads authentication material from environment variables or a local config file and performs authenticated network operations against GitLab APIs. Omitting explicit permission declarations can prevent proper consent, review, or sandboxing decisions, increasing the chance the skill is invoked with more authority than users realize.
