1 Comment
User's avatar
Josh Devon's avatar

The big challenge with MCP gateways is that a point in time verification isn’t enough if the developer maliciously updates it, wrote about this here https://open.substack.com/pub/securetrajectories/p/postmark-mcp-trojan-horse