Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 89% confidence
- Finding
- The skill documentation declares runtime behavior that reads local files, accesses environment variables, and makes outbound network requests, but it does not declare corresponding permissions. This creates a transparency and policy-enforcement gap: users or the platform may grant trust to the skill without realizing it can access local configuration and transmit data externally.
