Discussion about this post

User's avatar
Benta Kamau's avatar

Loved your line of thought speed without epistemic grip breeds fragility.

The sharp edge I’m seeing is agent wiring via MCP: once a vibe-coded prototype gets tool access, prompt-injection + lax auth can turn into OS-level action or data exfil.

My current “viable” gate for MCP is - mTLS + scoped tokens + signed tools + sandboxed exec + deny-by-default egress + provenance logs before any agent can touch prod.

Would you endorse a policy as blunt as “MCP only in dev/staging until these six controls are verified”, or do you see a lighter-weight first step that still blocks the big failure modes?

Expand full comment

No posts