← Back to context

Comment by blairharper

5 days ago

> I don’t want APIs, I want agents to use the same CLI tooling I already use that is locally available.

I do not want agents using the same elevated auth I have via my CLI tooling. One hallucination with your gh cli and the blast radius is every repo you have write (or worse, admin) access to.

MCP lets you scope tokens down (on supported platforms), or at minimum gives you something you can revoke independently.