MCP has no security model. I built Heddle — a policy-and-trust layer that turns YAML configs into validated, policy-enforced MCP tool servers. Then I invited AI security audits to break it.
The Security Gap in MCP Tool Servers (And What I Built to Fix It)