logoalt Hacker News

0x696C6961yesterday at 12:24 PM1 replyview on HN

You run the MCP server outside of the agent sandbox so it doesn't have access to the credentials.


Replies

lukewarm707yesterday at 12:57 PM

yes and also you can firewall the container so that it can only contact the mcp/proxy.

this way it doesn't download a trojan or leak your data to someone