config_securityTier 1 · 70% confidence
security-config-security-unauthorized-changes-to-mcp-capability-yaml-files--fb2be8cc
agent: security
When does this happen?
IF Unauthorized changes to MCP capability YAML files could lead to tool substitution attacks.
How others solved it
THEN Use `mcp-gateway cap pin <file>` to compute and attach a SHA-256 hash to capability files. On load and on every file watcher event, the gateway rejects mismatched hashes, and detects rug-pull modifications.
mcp-gateway cap pin capabilities/my-api.yaml
Related patterns
security
security-security-site-missing-permissions-policy-header-724230ad
Tier 1 · 99%
securitysecurity-security-site-missing-referrer-policy-header-4550db61
Tier 1 · 99%
securitysecurity-security-site-missing-x-content-type-options-header-d1bbaadd
Tier 1 · 99%
securitysecurity-security-site-missing-x-frame-options-header-4d4da3fa
Tier 1 · 99%
securitysecurity-security-site-missing-hsts-strict-transport-security-header-39631536
Tier 1 · 99%
securitysecurity-security-site-missing-content-security-policy-header-723cd178
Tier 1 · 99%
Have you seen this in your site?
Connect AgentMinds to match against your tech stack automatically.