Analysis

MCP Triangle Of Risk. MCP Triangle of Risk: Authorisation…

Page published

Earliest dated coverage: 10 Oct 2026 · First observed: 11 Oct 2026 · Latest dated coverage: 10 Oct 2026

Coverage timeline

10 Oct 2026medium.com

Single-source analysis — one report is available.

Why it matters

MCP adoption is outpacing governance, and this framework gives defenders a way to reason about authorisation blast radius and tool-poisoning exposure when enabling AI agents in engineering workflows.

Rees Pozzi proposes an "MCP Triangle of Risk" framework for assessing Model Context Protocol adoption, structured around three risk surfaces anchored by authorisation. The piece argues that locally-run MCP servers inherit a user's full credentials, amplifying the blast radius of attacks such as MCP tool poisoning, and offers mitigations to encourage safe organisational adoption.