Skip to main content

266 posts tagged with "Model Context Protocol"

Content about the Model Context Protocol (MCP)

View all tags

Read the AI agents and MCP guide

Claude Code's Agents Now Push and Open PRs Unattended — Where Should Your Deploy Trigger Actually Bind?
·Dora Noda·9 min

Claude Code's Agents Now Push and Open PRs Unattended — Where Should Your Deploy Trigger Actually Bind?

Claude Code v2.1.198 shipped background agents that commit, push, and open a draft PR with no human in the loop. Here's the concrete trigger-point table for where a deploy pipeline should actually bind when the pusher might be an agent, plus the four-item audit checklist a self-hosted deploy-from-chat MCP server needs first.

AI agents
self-hosting
PaaS
security
+1
Claude Code's Dynamic Workflows Cap Concurrency at 16, Not Hundreds: What a Real Subagent Burst Does to a Deploy MCP Server
·Dora Noda·11 min

Claude Code's Dynamic Workflows Cap Concurrency at 16, Not Hundreds: What a Real Subagent Burst Does to a Deploy MCP Server

Claude Code's Dynamic Workflows can fan out 1,000 subagents per run, but the runtime caps live concurrency at 16. Here's what that actual burst shape requires from an MCP server that exposes deploy and rollback.

Model Context Protocol
AI agents
Claude
self-hosting
+1
Your Cursor Sandbox Was Never the Thing Protecting You: Inside DuneSlide's Zero-Click RCE
·Dora Noda·8 min

Your Cursor Sandbox Was Never the Thing Protecting You: Inside DuneSlide's Zero-Click RCE

Two CVSS 9.8 bugs in Cursor let a zero-click prompt injection escape the sandbox and reach full code execution. The real lesson isn't the sandbox bug — it's that the agent held the developer's standing machine permissions the whole time.

Cursor
security
AI agents
Model Context Protocol
Dremio's MCP Server Doesn't Give AI Agents a Separate Policy — Here's the Kubernetes Version for a Self-Hosted PaaS's Deploy Tools
·Dora Noda·9 min

Dremio's MCP Server Doesn't Give AI Agents a Separate Policy — Here's the Kubernetes Version for a Self-Hosted PaaS's Deploy Tools

Dremio's lakehouse MCP server enforces the same row/column policies for an AI agent as for the human who's logged in — no separate agent policy to write or drift out of sync. Here's the exact Kubernetes primitives (TokenRequest, RBAC impersonation, audit logging) that build the same guarantee into a self-hosted PaaS's deploy and rollback tools.

Model Context Protocol
self-hosting
PaaS
security
+1
Your MCP Traffic and Your Tenants' LLM Calls Just Got a Real Kubernetes Primitive
·Dora Noda·9 min

Your MCP Traffic and Your Tenants' LLM Calls Just Got a Real Kubernetes Primitive

Kubernetes' new AI Gateway Working Group is formalizing token-based rate limiting, model-aware routing, and provider failover as Gateway API primitives. Here's what's already GA, what's still a proposal, and what it means for a platform routing both tenant and agent MCP traffic through one ingress layer.

infrastructure
self-hosting
PaaS
AI agents
+1
MCP Apps Ships July 28: What a Rollout Dashboard Instead of Raw JSON Means for Deploy-From-Chat
·Dora Noda·8 min

MCP Apps Ships July 28: What a Rollout Dashboard Instead of Raw JSON Means for Deploy-From-Chat

MCP Apps lets a tool return a live, sandboxed dashboard instead of a JSON blob the model has to paraphrase. Here's exactly what that changes for a deploy-from-chat platform's rollout and rollback tools.

Model Context Protocol
self-hosting
PaaS
infrastructure
+1
10,000 MCP Servers and Counting: Why Deploy-From-Chat's Real Bottleneck Is Discovery, Not Capability
·Dora Noda·9 min

10,000 MCP Servers and Counting: Why Deploy-From-Chat's Real Bottleneck Is Discovery, Not Capability

The official MCP Registry now lists nearly 10,000 servers and MCP SDKs hit 97 million monthly downloads. Here's why that scale makes discovery and trust the real bottleneck for a deploy-from-chat MCP server — and what actually closes the gap.

Model Context Protocol
AI agents
self-hosting
PaaS
+1
Microsoft's Poisoned MCP Tool Descriptions: When an Approved Tool's Metadata Silently Changes to Leak Data, Not Its Code
·Dora Noda·11 min

Microsoft's Poisoned MCP Tool Descriptions: When an Approved Tool's Metadata Silently Changes to Leak Data, Not Its Code

Microsoft's June 2026 guidance shows an MCP tool's approved name and summary can stay frozen while its description silently changes to smuggle a hidden instruction. Here's the attack, three real precedents, and the checklist a deploy-from-chat MCP server needs to catch it.

Model Context Protocol
AI agents
cybersecurity
self-hosting
+1
12-Factor Agents Is the New 12-Factor App: A Deploy Tool's Field Guide
·Dora Noda·11 min

12-Factor Agents Is the New 12-Factor App: A Deploy Tool's Field Guide

Dex Horthy's 12-Factor Agents mirrors Heroku's 2011 methodology almost line for line. Here's what each of the twelve factors concretely costs a platform building MCP-exposed deploy and rollback tools for AI agents.

AI agents
Model Context Protocol
self-hosting
PaaS
+1
Showing 235–243 of 266 posts