Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 88% confidence
- Finding
- The skill declares access to sensitive environment variables and an authenticated operations endpoint, and it instructs use of a Python script that can send messages over the network, but it does not declare explicit permissions. This creates a transparency and governance gap: the skill can perform externally impactful actions and use credentials without a clear permission model, increasing the risk of unauthorized message delivery or misuse if invoked unexpectedly.
