I would be extremely cautious about what you log from LLMs in a cloud MCP server, who you make those logs available to, data retention policies, etc.
They are going to be a PII landmine.
kosmozaut 121 days ago [-]
We hear you… There is always a trade-off between analytics and user privacy. We believe that open-source solutions are the way to go in this space, however no implementation is going to suit every use-case.
As person that works with Magento for 14+ years, as was pretty confused when see that it's unrelated...
brap 121 days ago [-]
How does auth work in practice? What’s the login process from the user’s PoV?
kosmozaut 121 days ago [-]
MCP supports authentication via OAuth2, which is what we use here. For the most part, this means that a browser window is opened and the user can sign in with their GitHub or Google account. The access token is verified by us and passed to the upstream MCP server.
We'd love to allow orgs to bring their own IdP but there is some refactoring we still have to do for this.
Rendered at 02:06:53 GMT+0000 (Coordinated Universal Time) with Vercel.
They are going to be a PII landmine.
We'd love to allow orgs to bring their own IdP but there is some refactoring we still have to do for this.