Live data from Hacker News

Viewing profile — mavzer

mavzer

HN member
Joined
Sun, Sep 22, 2024, 1:14 PM UTC
HN karma
18
Public activity
6 items

About mavzer

security engineer

Recent public activity

  1. story
    Show HN: Get a security assessment of MCP servers directly from your terminal

    I built a deterministic scanner that catches command injection, prompt-injection markers in tool descriptions, over-broad/destructive tools, and committed secrets in MCP servers be…

  2. comment
    Comment #48889703

    100%!! All AI tooling (MCPs, skills, models etc) has to go through the same scrutiny applied to any other web service. But as always, security is an afterthought that comes back to…

  3. comment
    Comment #48885849

    Nice. Basically, I see 3 ways the MCP ecosystem converging - Centralized, well trusted sources for MCP servers - Technical people like you creating their own, private MCPs for spec…

  4. comment
    Comment #48885595

    https://index.canopii.dev Part of my job is to approve / reject MCP servers based on how secure they are and whether they are suitable for use in an enterprise environment. I was t…

  5. story
  6. story
    Show HN: A Trust Index for MCP Servers

    As a security professional whose employer has given Claude and various other AI tooling to everyone at the company, I kept finding myself as the bottleneck because my team had to r…