Thank you for helping us keep Model Context Protocol and any systems it interacts with secure.
The Model Context Protocol project is maintained by Anthropic.
The security of our systems and user data is Anthropic’s top priority. We appreciate the work of security researchers acting in good faith in identifying and reporting potential vulnerabilities.
Our security program is managed on HackerOne and we ask that any validated vulnerability in this functionality be reported through their submission form.
Our Vulnerability Program Guidelines are defined on our HackerOne program page.