Easy. What a cron script (that runs as root) that populate a maildir that the agent (restricted user) has access to. The. you restrict network access to the internet, and have it send you its findings by mail (local mail server).
That’s not an example of “Authorisation is a way to do that”, and, I think, not easier than writing a MCP server.
That’s not an example of “Authorisation is a way to do that”, and, I think, not easier than writing a MCP server.