Audit: 47% of MCP Registry Servers Hide Steering Instructions
ChiefGrowth · reddit · 2026-08-29
An audit of 15,329 remote servers in the official MCP registry reveals significant security insights. 54% of servers returned a tool list, with 29% of live tools hosted by just two domains. While no direct secret theft (like SSH keys) was found in 140,284 descriptions, widespread 'steering' was detected. 47 hosts (406 tools) inject hidden instructions into tool descriptions, directing models to hide competitors, bypass safety checks, or conceal platform limitations from users.
More from Safety
- Anthropic shows AI researchers autonomously improving alignment of other models — VraserX · 2026-08-30
- Aligning agent interactions is orders of magnitude harder than single agents — Afinetheorem · 2026-08-30
- Debate on OpenAI Swarm Incident: Atmospheric Ignition vs. Hacker Script — mimi10v3 · 2026-08-30
- METR Researcher: Watch Out for Third-Party Oversight Theater — RichardMCNgo · 2026-08-30
- Evidence Suggests Agent Swarms Won't Spontaneously Solve Human Issues — LuizaJarovsky · 2026-08-30
- Opinion: AI-Driven Bioweapons Could Target Food Systems, Starve Nations — PierceLilholt · 2026-08-30