Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 93% confidence
- Finding
- The skill invokes a Python script that uses network access and accepts an authorization token, but the skill metadata does not declare the corresponding permissions or clearly signal those capabilities. This weakens user and platform trust boundaries because a caller may not realize the skill can transmit sensitive inputs to an external service.
