Context-Inappropriate Capability
Medium
- Confidence
- 83% confidence
- Finding
- The skill introduces use of a credentialed third-party API via an environment-backed API key that is not disclosed in the manifest. Hidden credentialed egress increases the chance of unintended secret use, policy bypass, or unexpected data sharing with an external service when the user only expects public geo/POI lookups.
