How do you secure 15-plus MCP servers without confusing the model?

Dangerous-Tree-6734 · reddit · 2026-07-21

A user running 15+ MCP servers asks how people manage secrets and permissions without turning the setup into a mess.

Their current approach is:

They ask whether people use env vars, a proper secrets manager/vault, client-side or server-side permission scoping, or a gateway/proxy for central auth and logging.

Original post →

More from coding & agent

coding & agent channel →