github / github/github-mcp-server

Suggestion: add a recommended security policy / rate limiting guide

オープン
#2,233 コメント 2 件 リアクション 0 件 担当者 0 名 GitHub で見る
主要言語
Go
スター
33k
フォーク
5k
平均マージ
2日 1時間
マージ済み PR(30日)
52

説明

## Context

The GitHub MCP server exposes 83 tools, including destructive operations like `delete_file`, write operations like `push_files` and `merge_pull_request`, and resource creation like `create_repository`. There are no built-in rate limits or access controls — every tool is available to the agent at all times.

For agents in production workflows, this can be risky. An agent stuck in a loop can create dozens of repos or issues. A prompt injection can trigger file deletion. There's no way to say "read everything but don't delete" without external tooling.

## Suggestion

Would the maintainers be open to adding a recommended security policy or rate limiting guide to the repo? This could be:

1. **A documentation section** in the README covering best practices for limiting tool access (e.g. using PATs with minimal scopes, using a proxy for rate limiting)
2. **A sample policy file** showing recommended rate limits for write operations and blocks on destructive tools

We maintain [Intercept](https://github.com/PolicyLayer/Intercept), an open-source MCP enforcement proxy, and have published a [ready-made policy template for the GitHub MCP server](https://policylayer.com/policies/github) with suggested defaults (file deletion blocked, writes rate limited at 30/hour, repo creation at 5/hour). Happy to contribute a PR if there's interest.

## Use case

Developers connecting the GitHub MCP server to Claude Code, Cursor, or other AI agents who want to limit what the agent can do without restricting the PAT scopes (which are too coarse-grained for per-tool control).

コントリビューションガイド

コントリビューションガイドを開く

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。