AI9 min read
12% of Public MCP Configs Hardcode a Secret. Here's How to Keep Yours Out of Git
Hush Security scanned about 82,000 public MCP config files and found real credentials written straight into 12% of credential slots. Here is how to keep yours out of Git in every major client, and what to do if one already leaked.





