logoalt Hacker News

honoluluxyzyesterday at 8:03 PM1 replyview on HN

It seems like OP needs to provide a solution to hiding the credentials from the model in order to suggest CLI-mode only, and also a solution to the problem of agents without shell access.


Replies

maharshi365yesterday at 8:05 PM

I've been thinking about this. Technically mcp auth is also not secure, the keys are in env or in file and accessible to the agent.

I think something like infiscial ai proxy could be useful here. Never store the creds on device.

show 4 replies