Permit.io Launches MCP Gateway to Address Security Gaps in AI Agent Operations

Permit.io Launches MCP Gateway to Address Security Gaps in AI Agent Operations

First seen 26 Mar 2026, 15:47 UTC Sg.Finance.YahooBusinesswire 94% similarity 67.5

Article Content

Browse articles
ThreatCluster

Permit.io has launched the Permit MCP Gateway to address significant security gaps in the Management Control Protocol (MCP) used by AI agents in enterprise environments. These agents currently operate without fine-grained authorization, delegation tracking, or audit trails, leading to vulnerabilities. OWASP identifies Shadow MCP Servers as a top-10 risk, with incidents like Asana's data leak and a critical flaw in the mcp-remote npm package exposing unpatched systems to remote code execution. The MCP protocol has seen rapid adoption, with 97 million monthly SDK downloads, and is supported by major tech companies. The new gateway provides real-time authorization, tracks delegation chains, and ensures agents do not exceed granted permissions. It is available in both hosted SaaS and on-premises configurations. The launch comes amid growing concerns over the autonomous actions of AI agents without proper oversight.

Key Points: • Permit.io launches MCP Gateway to enhance security for AI agents in enterprises. • OWASP ranks Shadow MCP Servers as a top-10 risk due to lack of authorization. • The MCP protocol has 97 million monthly SDK downloads, indicating rapid adoption.

ThreatCluster AI How this analysis works

Timeline

2025-12-01
Anthropic donates MCP protocol to the Linux Foundation.
2026-03-25
Permit.io announces launch of MCP Gateway.
2026-03-26
Permit.io's MCP Gateway officially launched.

Community

Browse all →

Tracked Entities in This Story