Layer-2 supply-chain hardening for MCP servers — Ed25519-signed tool manifests, runtime spawn-attestation, default-deny argument sanitizer. Defends against marketplace-poisoning + CVE-2025-69256 + CVE-2025-61591.
cli manifest security typescript signing mcp ed25519 attestation supply-chain-security sigstore anthropic model-context-protocol mcp-server cve-2025-69256 cve-2025-61591 built-in-mallorca
-
Updated
Jun 8, 2026 - TypeScript