blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp

Preview meta tags from the blog.trailofbits.com website.

Linked Hostnames

12

Thumbnail

Search Engine Appearance

Google

https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp

Insecure credential storage plagues MCP

This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.



Bing

Insecure credential storage plagues MCP

https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp

This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.



DuckDuckGo

https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp

Insecure credential storage plagues MCP

This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.

  • General Meta Tags

    7
    • title
      Insecure credential storage plagues MCP - The Trail of Bits Blog
    • charset
      UTF-8
    • viewport
      width=device-width,initial-scale=1
    • description
    • article:section
      posts
  • Open Graph Meta Tags

    7
    • og:url
      https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp/
    • og:site_name
      The Trail of Bits Blog
    • og:title
      Insecure credential storage plagues MCP
    • og:description
      This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.
    • US country flagog:locale
      en_us
  • Twitter Meta Tags

    4
    • twitter:card
      summary_large_image
    • twitter:image
      https://blog.trailofbits.com/img/Trail-of-Bits-Open-Graph.png
    • twitter:title
      Insecure credential storage plagues MCP
    • twitter:description
      This post describes how many examples of MCP software store long-term API keys for third-party services in plaintext on the local filesystem, often with insecure, world-readable permissions.
  • Link Tags

    11
    • dns-prefetch
      //fonts.googleapis.com
    • dns-prefetch
      //fonts.gstatic.com
    • preconnect
      https://fonts.gstatic.com
    • preload stylesheet
      /css/syntax.css
    • shortcut icon
      /favicon.png

Links

30