Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 86% confidence
- Finding
- The skill documentation describes capabilities that read environment/config values, write local files, invoke shell commands, and perform network operations, yet no explicit permissions are declared. That creates a transparency and governance gap: users or orchestration systems cannot accurately constrain or review what the skill is allowed to do before execution. In this context the operations appear related to API initialization, upload, polling, and download rather than overtly malicious behavior, but the missing permission declaration still increases risk.
