build1 publisher
MCP tool poisoning enters through the description string that tools/list returns
A dev.to post argues MCP's attack surface follows from point-to-point model-to-server links and belongs behind an inline gateway. The tool-poisoning path it documents runs through description text that a gateway may forward unchanged.
Publishers:dev.to
Reality
- Evidence40
- Adoption
- Insufficient
- Hype gap+35
- Incentives75
- Confidence45