Audit: 47% of MCP Registry Servers Hide Steering Instructions

ChiefGrowth · reddit · 2026-08-29

An audit of 15,329 remote servers in the official MCP registry reveals significant security insights. 54% of servers returned a tool list, with 29% of live tools hosted by just two domains. While no direct secret theft (like SSH keys) was found in 140,284 descriptions, widespread 'steering' was detected. 47 hosts (406 tools) inject hidden instructions into tool descriptions, directing models to hide competitors, bypass safety checks, or conceal platform limitations from users.

Original post →

More from Safety

Safety channel →