Fetching from the wire…
Security2026-08-15 · source-backed
luckyPipewrench/pipelock (795 stars), an agent egress firewall that scans mediated HTTP, MCP, A2A and WebSocket traffic for exfiltration, SSRF and prompt injection, landed both fixes in 24 hours. GitHub A metrics side channel in a mediation proxy leaks exactly what the proxy exists to protect. Observability surfaces on a security mediator are attack surface. Audit your own /metrics endpoint for anything that varies with request content.
Each link below shares sources, entities, or timing with this story.
Cursor uses MCP / Shared entities / Same source domain / Shared topic / Earlier coverage
Linked by a graph relationship (Cursor uses MCP); both cover GitHub, MCP, SSRF; reported by the same outlet (github.com).
Figma supports MCP / Shared entities / Same source domain / Shared topic / Earlier coverage
Linked by a graph relationship (Figma supports MCP); both cover Audit, GitHub, MCP; reported by the same outlet (github.com).
Claude Code uses MCP / Shared entities / Same source domain / Shared topic / Earlier coverage
Linked by a graph relationship (Claude Code uses MCP); both cover Audit, GitHub, MCP; reported by the same outlet (github.com).
OpenAI supports MCP / Shared entities / Shared topic / Earlier coverage / Tension
Linked by a graph relationship (OpenAI supports MCP); both cover HTTP, MCP, SSRF; overlapping topics (agent, attack).
CrewAI supports A2A / Shared entities / Same source domain / Shared topic / Earlier coverage
Linked by a graph relationship (CrewAI supports A2A); both cover MCP, SSRF; reported by the same outlet (github.com).
Claude uses MCP / Shared entities / Same source domain / Earlier coverage
Linked by a graph relationship (Claude uses MCP); both cover Audit, GitHub, MCP; reported by the same outlet (github.com).
Cursor uses MCP / Shared entities / Same source domain / Earlier coverage
Linked by a graph relationship (Cursor uses MCP); both cover GitHub, HTTP, MCP; reported by the same outlet (github.com).
Cursor uses MCP / Shared entities / Same source domain / Shared topic / Earlier coverage
Linked by a graph relationship (Cursor uses MCP); both cover GitHub, HTTP; reported by the same outlet (github.com).