Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill explicitly uses network access and environment-variable based configuration/token handling, yet no permissions are declared. This creates a trust gap: a caller may assume the skill is low-risk while it can make authenticated backend requests and consume credentials from the local environment, increasing the chance of unintended data access or mutation.
