Signature Cloaking: The Invisible MCP Parameters
摘要
When you set up a Model Context Protocol (MCP) server, the host application treats the tool's JSON schema as a complete trust agreement. The main security belief in the MCP ecosystem is that the parameters listed during the tools/list discovery phase show everything the tool can do.