Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 95% confidence
- Finding
- The skill documentation explicitly instructs reading a local user-provided configuration file containing webhook secrets and making outbound network requests, yet no permissions are declared. This creates a real security and governance gap: users and hosting platforms are not transparently informed that the skill can access local secret material and exfiltrate message content to third-party endpoints.
