I scanned 14 MCP servers on my laptop, then compiled a least-privilege policy from what my agent actually did
This story is from 2026-09-17. It is preserved in the archive; the latest stories are on the live feed.
I run six agent platforms on one laptop. Between them they have 14 MCP servers configured, 12 of them unpinned ( npx -y pkg@latest ), and five plaintext API keys sitting in config files. I only knew that after writing a read-only scanner. That scanner turned into pod . The piece I care about is the…
Read the full story at DEV Community — AI ↗
Timeline · 1 report
- 2026-09-17 02:55 · DEV Community — AI
I scanned 14 MCP servers on my laptop, then compiled a least-privilege policy from what my agent actually did