Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 90% confidence
- Finding
- The skill includes executable code paths that use environment variables, filesystem access, shell commands, and network calls, but it does not declare corresponding permissions. This creates a mismatch between the skill's documented trust boundary and its actual capabilities, which can lead to unintended secret exposure, local file access, or external API calls if the host or user assumes the skill is non-privileged.
