Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 87% confidence
- Finding
- The skill declares and depends on the sensitive environment variable `GUAIKEI_API_TOKEN`, but the metadata shown does not include an explicit permissions model describing access to secrets or outbound integration scope. That creates a transparency and least-privilege problem: users and hosts may not clearly understand that the skill can consume a token and send requests to a third-party API service. In this context, the risk is somewhat reduced because the file openly documents the token purpose and limits usage to public-data retrieval, but it is still a real configuration and disclosure weakness.
