Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill includes executable code paths and operational guidance for environment variables, filesystem access, network calls, and shell execution, but does not declare corresponding permissions. That mismatch weakens security review and user consent because an agent may invoke higher-risk capabilities without an explicit permission contract. In this context, the danger is elevated by support for API-key handling, uploads, downloads, and local media processing, which can expose secrets or modify local files if the runtime auto-executes examples or companion scripts.
