Spoiler: VirusTotal Code Insight’s preliminary audit flagged nearly 8% of MCP (Model Context Protocol) servers on GitHub as potentially forged for evil, though the sad truth is, bad intentions aren’t required to follow bad practices and publish code with critical vulnerabilities. Audio version of this post, created with NotebookLM Deep Dive Your browser does not support the audio element. Before we get started, a quick personal note.