(no title)
kxbnb | 1 month ago
One thing I'd be curious about: how do you think about security when skills auto-provision based on stack detection? If a skill gets compromised upstream, the auto-sync could propagate it quickly.
We're working on policy enforcement for MCP at keypost.ai and thinking about similar trust questions - what should be allowed to load/execute vs what needs explicit approval.
DavidGraca|1 month ago
how are you dealing with this topic at keypost.ai?