Nimble | AI Engineers Radar

Model Context Protocol (MCP) — explosive growth, vulns & enterprise hardening

Model Context Protocol (MCP) — explosive growth, vulns & enterprise hardening

Key Questions

What is the current growth rate of MCP SDK downloads?

MCP has reached over 300 million SDK downloads per month, indicating explosive adoption across AI agent ecosystems.

Which companies have recently launched MCP servers or integrations?

New releases include Zuplo Server, Scalekit, ShipBob, OpenAI, Sage Intacct, and Trust3 AI security layer, alongside Qoder CLI and Claude sandboxes.

What are the main security risks associated with Shadow MCP?

Shadow MCP deployments introduce governance challenges around unauthorized tool access and credential exposure in enterprise environments.

How are enterprises hardening MCP implementations?

Focus areas include schema validation, Unity Catalog governance, and Zero Trust token patterns to secure agent interactions.

What does the Base MCP launch enable for ChatGPT and Claude agents?

It connects agents directly to onchain wallet actions, expanding MCP use cases into blockchain and financial workflows.

How does the Zuplo MCP Server support developers?

It exposes the full Developer API as tools, allowing MCP clients like Claude Code or Cursor to manage deployments, keys, and domains.

What role does Trust3 AI play in MCP security?

Trust3 AI provides a dedicated security layer to mitigate risks from uncontrolled MCP server exposure and agent tool misuse.

Are there tutorials available for building MCP-based agents?

Yes, resources include tutorials on Claude Agent SDK + MCP for GitHub automation and modernizing Java systems with MCP at Devnexus 2026.

MCP at 300M+ SDK dl/mo; new Zuplo Server, Scalekit, ShipBob, OpenAI, Sage Intacct, Trust3 AI security layer; Qoder CLI, Claude sandboxes. Shadow MCP risks and governance (Unity Catalog, Zero Trust tokens) emerging. Enterprise hardening ongoing with schema focus.

Sources (8)
Updated May 27, 2026