Keamanan¶
Untuk deployment publik, aktifkan OAuth dan jangan mount Docker socket, root host, atau kredensial jangka panjang.
Mandatory rules:
- Keep OAuth enabled for public deployments.
- Do not mount
/var/run/docker.sock. - Do not mount the host root filesystem.
- Do not expose unauthenticated MCP tools on the public internet.
- Treat file links and credential volumes as sensitive.
- Use disposable containers or VMs when granting broad authority.