Lp3
Medium
- Category
- MCP Least Privilege
- Confidence
- 94% confidence
- Finding
- The skill clearly requires an environment variable secret (`CAIYUN_WEATHER_API_TOKEN`) and performs outbound network requests to Caiyun Weather and OpenStreetMap geocoding, but it does not declare corresponding permissions. This creates a transparency and governance gap: the runtime may expose secrets and allow network access without explicit permission review, which is risky even though the described functionality is legitimate for a weather API skill.
