SkillsSkill 4: Scan MCP Servers Before Deployment with mcpserver-audit and Snyk agent-scanModelContextProtocol-Security/mcpserver-audit (Cloud Security Alliance)·medium signalXBlueskyLinkedInCopy link1. Install mcpserver-audit from the ModelContextProtocol-Security GitHub orgSourceSource pageModelContextProtocol-Security/mcpserver-audit (Cloud Security Alliance)↳ Follow the threadShared entity / Actor roleLangChain 1.4.0a3 adds a first-party langchain.mcp namespace with client-side tool caching and elicitation as LangGraph interruptsGitHubPolicy dependency / Stack layerFour advisories land on Databricks' Omnigent meta-harness, one critical, all reported by an autonomous security agentGitHub Security AdvisoriesShared entity / Stack layerMCP compliance tracker scores five coding agents at 56% and finds the Tasks spec implemented by noneIs MCP Good Yet?Stack layer / Update threadClaude Code adds a Containment Escape rule to auto mode and blocks plugin symlink path escapesGitHub (anthropics/claude-code)Policy dependency / Update threadArize Phoenix 20.5.0 gates agent browser actions behind whole-script approval and adds a session-level PII evaluatorGitHubPolicy dependency / Update threadAnthropic open-sources a commerce agent blueprint with three runtimes and merchant approval gatesGitHub (Anthropic)Stack layer / Update threadQwenPaw 2.2.0 ships a self-hostable multi-user Hub and a Mail MCP that requires human approval for unknown recipientsGitHubPolicy dependency / Stack layerCROSS-CATEGORY: Four Unrelated Vendors Shipped Agent Authorization Control Planes Inside 48 HoursJetStream (corroborated by Genesys Xperience 2026 coverage, aiagentstore.ai and Hacker News Show HN)