> Insecure credential storage plagues MCP
[DATE: 30/04/2025 07:00]
[LANGUAGE: EN]
This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.