AI Agent Has Root: MCP servers run with full user permissions

A developer found that shell MCP servers in Claude run with the user's full permissions, giving AI agents access to SSH keys, AWS credentials, and the entire home directory with no audit trail. The post warns that unsandboxed MCP servers can act as the user without restrictions.
1 source
Daily brief
Get tomorrow's AI brief in your inbox
More stories today
- Nvidia-backed Lambda raises $1B debt for chip deal
- Developer fatigue with AI-generated specs and plans
- Meta researchers train 8B model to match Claude Opus 4.5
- Decathlon scales demand forecasting with Chronos-2 on AWS
- Salesforce achieves Multi-AZ HA with SageMaker Inference Components