My Notes on MCP Testing - Part 3
Understanding MCP Tool Metadata and Security Considerations In my last blog, I explained how to connect to Chrome DevTools MCP using MCP Inspector . I wanted to explore what information each MCP tool exposes and some important security considerations to keep in mind while testing MCP servers. What Does an MCP Tool Expose? Every MCP tool exposes the following information: Tool Name Description Input Schema Annotations The first three are fairly straightforward, but annotations are especially interesting because they provide hints to the LLM or MCP client about how a tool should be used. MCP Tool Annotations MCP defines four annotation types. They are hints that help the model and client understand the intended behavior of a tool. 1. readOnlyHint Indicates that the tool does not modify its environment. Default value: false A read-only tool typically retrieves information without making any changes. 2. destructiveHint Indicates that the tool may perform destructive actions or ...