Skip to main content

266 posts tagged with "Model Context Protocol"

Content about the Model Context Protocol (MCP)

View all tags

Read the AI agents and MCP guide

MCP Memory Servers: What Persistent Memory-as-a-Tool Means for a Deploy Agent That Forgets Every Session
·Dora Noda·9 min

MCP Memory Servers: What Persistent Memory-as-a-Tool Means for a Deploy Agent That Forgets Every Session

MCP memory servers give deploy agents persistent memory any client can share — last good deploys, environment preferences, and incident fixes recalled by retrieval instead of replayed history. The catch: multi-tenant isolation and poisoned-memory attacks that turn one bad fact into a standing prompt injection.

Model Context Protocol
AI agents
security
self-hosting
10,000+ MCP Servers in Production: What the 2026 Numbers Say About Treating MCP as Infrastructure, Not a Toy
·Dora Noda·12 min

10,000+ MCP Servers in Production: What the 2026 Numbers Say About Treating MCP as Infrastructure, Not a Toy

MCP has crossed 10,000 public servers and 97 million monthly SDK downloads — but benchmarks show the stdio transport collapsing at 20 concurrent connections while Streamable HTTP holds 100% success. This breakdown turns the 2026 numbers into a production checklist: stateless transport, backpressure, real-path health checks, OAuth, and a load-test recipe for deploy and rollback tools.

Model Context Protocol
AI agents
infrastructure
engineering
+1
Railway's Dotenv Diff Review: What Confirm-Before-Apply Env Changes Teach Agent-Driven Deploy Pipelines
·Dora Noda·10 min

Railway's Dotenv Diff Review: What Confirm-Before-Apply Env Changes Teach Agent-Driven Deploy Pipelines

Railway's variable edit flow batches env changes, shows a redacted diff, and applies only on confirm. That shape is the governance primitive agent-driven deploy pipelines need before AI agents get write access to production config.

AI agents
Model Context Protocol
security
PaaS
+1
Your Read-Only Tool Is the Sandbox Escape: What Claude Code's /proc/self/environ API-Key Leak Teaches About Agent Deploy Pipelines
·Dora Noda·12 min

Your Read-Only Tool Is the Sandbox Escape: What Claude Code's /proc/self/environ API-Key Leak Teaches About Agent Deploy Pipelines

Microsoft researchers hid instructions in a GitHub issue comment, steered Claude Code's Action to its unsandboxed Read tool, and walked out with a live API key. Here is the full four-step chain plus a 7-point audit for your own agent deploy pipeline.

cybersecurity
AI agents
Model Context Protocol
guide
CVE-2026-61560: How an Unauthenticated MCP Default Turned a File-Upload Tool Into Full GitLab Account Takeover
·Dora Noda·11 min

CVE-2026-61560: How an Unauthenticated MCP Default Turned a File-Upload Tool Into Full GitLab Account Takeover

A CVSS 9.8 flaw in @zereight/mcp-gitlab chains an unauthenticated SSE transport, an unsanitized file path, and a credential in process memory into full GitLab account takeover. The exploit chain, why the default was the real bug, and a six-item hardening checklist for every MCP server you self-host.

Model Context Protocol
cybersecurity
self-hosting
AI agents
Every Deploy Surface Is Shipping an MCP Server: What a PaaS's Agent Interface Must Expose (and What Keeps It Safe)
·Dora Noda·12 min

Every Deploy Surface Is Shipping an MCP Server: What a PaaS's Agent Interface Must Expose (and What Keeps It Safe)

TeamCity, Dooor OS, and the PaaS scoreboard all converged on the same contract: a typed MCP tool surface over deploy, rollback, logs, and status. The minimum inventory a git-push PaaS must expose, and the four controls that make it production-safe.

Model Context Protocol
AI agents
PaaS
self-hosting
+1
10,000 MCP Servers and 97M Downloads Later, the Bottleneck Is Discovery
·Dora Noda·9 min

10,000 MCP Servers and 97M Downloads Later, the Bottleneck Is Discovery

MCP passed 10,000 public servers and 97M monthly SDK downloads, so the hard problem is no longer the protocol — it is discovery and trust. What Arcade's brokered runtime and the Coolify agent bridges teach a self-hosted PaaS about shipping a deploy, rollback, and logs server that agents can find and be trusted with.

Model Context Protocol
AI agents
PaaS
security
Half a Billion Downloads Get a Diploma: What MCP's First Certification (MCPA) Signals for Platform Teams
·Dora Noda·9 min

Half a Billion Downloads Get a Diploma: What MCP's First Certification (MCPA) Signals for Platform Teams

The Agentic AI Foundation's MCPA exam arrives as MCP SDK downloads near half a billion a month. What the blueprint's 50% ops-and-security weighting tells platform teams, what the credential doesn't prove, and three moves to make this quarter.

Model Context Protocol
AI agents
Careers
PaaS
+1
1 Million Agents in 3 Months: What Notion's Enterprise Agent Surge Means for a PaaS Whose Deploy API Is the Agent's Next Tool Call
·Dora Noda·11 min

1 Million Agents in 3 Months: What Notion's Enterprise Agent Surge Means for a PaaS Whose Deploy API Is the Agent's Next Tool Call

Notion customers built 1 million AI agents in three months, yet 69% of enterprises still share credentials across agents. This is the five-item checklist — per-agent identity, scoped tokens, agent-aware quotas, audit attribution, MCP deploy tools — a PaaS deploy API needs before agents become its callers.

AI agents
Model Context Protocol
security
PaaS
+1
Showing 73–81 of 266 posts