Andrea Menin
Posts
n8n's MCP Server Trigger ships with a bearer token and per-workflow opt-in. Six months later you have ten endpoints, one token, and no idea who calls what.
MCP tool responses join the LLM context as trusted tokens. A leaked API key or customer email becomes part of the prompt the model reads and logs.
Thoughts, stories and ideas.