Natural-Language Policy Violations
Medium
- Confidence
- 96% confidence
- Finding
- The documentation explicitly tells users to trust a self-signed certificate for the internal endpoint without providing fingerprint verification, distribution of a private CA, or any out-of-band authenticity check. That weakens TLS identity guarantees and can enable man-in-the-middle interception of MCP traffic, including bearer tokens, especially on internal networks where users may assume trust by default.
