Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documents and operational flow indicate capabilities to read environment/config values, write files, invoke shell commands, and access the network, yet no explicit permissions are declared. This creates a transparency and governance gap: users and the hosting platform may authorize or invoke the skill without understanding that it can handle API keys, upload local media, and persist downloaded outputs. In this context, the undocumented capability set is more dangerous because the skill actively manages credentials and local files, so misuse or overreach could expose secrets or user content.
