Listen "Security for MCP"
Episode Synopsis
The Model Context Protocol (MCP) specification has helped to accelerate access to a wide range of data sources for AI applications. But there are questions about the security and trust implications around a protocol that is still in its infancy. Scott Crawford and Justin Lam return to the podcast to examine the concerns that have been raised and changes that are underway in the specification with host Eric Hanselman. The previous episode introduced MCP and some of the market forces that are in play. Security considerations didn't appear to be fully sorted out in the first version of the specification, but more work is being done to move beyond the OAuth-based approach. Automating the data access process can be powerful, but also fraught with the potential for abuse. The larger questions in MCP revolve around understanding risk and establishing trust. Data exposure has been a constant concern in AI, but the more complex issues exist in the integrity of the data that's being used. AI technology is moving forward rapidly and adversaries that are looking to compromise it and moving right along with these advances. More S&P Global Content: The 2025 Generative AI Outlook Next in Tech | Ep. 224: Context Around MCP For S&P Global Subscribers: Technology Primer: Model Context Protocol explained Databases and analytic services get the agentic AI treatment at Google Cloud Next 2025 IT Insider 3: A roundup for IT decision-makers Credits: Host/Author: Eric Hanselman Guests: Scott Crawford, Justin Lam Producer/Editor: Adam Kovalsky Published With Assistance From: Sophie Carr, Feranmi Adeoshun, Kyra Smith
More episodes of the podcast Next in Tech
A Wild Earnings Season
16/01/2026
The Agentic Enterprise
13/01/2026
AWS re:Invent conference
23/12/2025
SC25 Supercomputing Conference
16/12/2025
Security and Observability
09/12/2025
Context Engineering
02/12/2025
The Big Picture Reports
25/11/2025
Agentic Customer Experience
18/11/2025
Money 20/20
11/11/2025
Open Compute Project Summit
04/11/2025
ZARZA We are Zarza, the prestigious firm behind major projects in information technology.