Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 96% confidence
- Finding
- The skill declares environment variable requirements and clearly performs outbound API calls to a Dify instance, but it does not declare corresponding permissions. This creates a transparency and policy-enforcement gap: users or the platform may not realize the skill can access secrets and send data over the network, which can lead to unintended data exposure or overly broad trust.
