Server data from the Official MCP Registry
Weather Ai tools for AI agents. Capabilities: get current conditions, get forecast, get historical
Weather Ai tools for AI agents. Capabilities: get current conditions, get forecast, get historical
This weather MCP server implements authentication and rate-limiting via a custom middleware, which is positive. However, there are several moderate security concerns: the authentication system relies on local file-based storage without encryption, API keys are passed as plaintext function parameters, sensitive usage/audit data is stored unencrypted in user home directories, and the rate-limiting mechanism is bypassable by not providing an API key. Additionally, unauthenticated access is permitted (free tier), and there is aggressive monetization messaging embedded throughout. The server's permissions (network HTTP, environment variables, file I/O) are appropriate for its stated weather service purpose, but the authentication implementation has significant gaps. Supply chain analysis found 3 known vulnerabilities in dependencies (0 critical, 3 high severity). Package verification found 1 issue.
7 files analyzed · 16 issues found
Security scores are indicators to help you make informed decisions, not guarantees. Always review permissions before connecting any MCP server.
This plugin requests these system permissions. Most are normal for its category.
Add this to your MCP configuration file:
{
"mcpServers": {
"io-github-csoai-org-weather-ai-mcp": {
"args": [
"-y",
"weather-ai-mcp"
],
"command": "npx"
}
}
}Be the first to review this server!
by Modelcontextprotocol · Developer Tools
Read, search, and manipulate Git repositories programmatically
by Modelcontextprotocol · Developer Tools
Web content fetching and conversion for efficient LLM usage
by Toleno · Developer Tools
Toleno Network MCP Server — Manage your Toleno mining account with Claude AI using natural language.