Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill clearly instructs the agent to execute Python scripts that fetch stock and market data from external providers, but no corresponding permission declaration is present. This creates an authorization and transparency gap: users and hosts may not realize the skill can make outbound network requests, which can lead to unreviewed data exfiltration or policy bypass in environments that rely on declared permissions.
