Discussion about this post

User's avatar
Lasse "Sasu" Sainia's avatar

I decided to write this article after seeing a growing number of companies adopt Model Context Protocol (MCP) in production systems without fully understanding the security implications of agentic AI architectures.

In many cases, MCP is implemented because it is well-documented, standardized, and easy to integrate — not because its risk profile has been carefully evaluated. The result is that highly privileged systems are being connected to non-deterministic models under the assumption that “the protocol will handle safety.”

This article is not meant to discourage experimentation or innovation. Its purpose is to highlight risks that are already well-understood in the security community, but are often overlooked in the rush to ship AI-enabled features.

My goal is simple: help teams make informed architectural decisions before those decisions become security incidents.

No posts

Ready for more?