Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill documents and enables filesystem, environment-variable, and network usage, but no explicit permission model is declared for those capabilities. This creates a transparency and least-privilege problem: a caller may invoke a seemingly simple watchlist skill without realizing it can write local files, read environment-controlled paths, and fetch remote content, which increases the risk of unintended data exposure or misuse if the skill is modified or abused.
