Skip to content

Commit 57d99a1

Browse files
authored
Merge pull request modelcontextprotocol#2011 from cyberstormdotmu/loganaden-patch-sandbox
Add note on updating sandbox technologies
2 parents 60641c4 + e3f8632 commit 57d99a1

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

docs/specification/draft/basic/security_best_practices.mdx

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -383,6 +383,7 @@ The MCP client **SHOULD** implement additional checks and guardrails to mitigate
383383
- Launch MCP servers with restricted access to the file system, network, and other system resources
384384
- Provide mechanisms for users to explicitly grant additional privileges (e.g., specific directory access, network access) when needed
385385
- Use platform-appropriate sandboxing technologies (containers, chroot, application sandboxes, etc.)
386+
- Keep sandboxing solutions up-to-date to account for emerging vulnerabilities
386387

387388
MCP servers intending for their servers to be run locally **SHOULD** implement measures to prevent unauthorized usage from malicious processes:
388389

0 commit comments

Comments
 (0)