An investigation into Model Context Protocol servers revealed that these tools operate with the same user permissions as the developer running them, granting unrestricted access to SSH keys, AWS credentials, and the entire home directory.
log in to read full article