Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 92% confidence
- Finding
- The skill documentation describes capabilities to read environment variables, perform network requests to an external API, write files, and invoke shell tools like ffmpeg, but it does not declare permissions or boundaries for those actions. That creates a real security governance gap: users and enforcement layers cannot easily determine that prompts, API keys, and generated media may be transmitted externally and that local files/shell execution are involved.
