Comment on Show HN: Reverse-engineering web apps into agent toolsparentComments−pancomplexOP2moThis works for non-authenticated sites but wouldn't work for anything behind a login wall that requires a JWT or similar - right?−teravor2moare you asking if it will magically allow you to bypass authentication? only if the service is vulnerable to auth bypass and you don't mind breaking multiple laws.−hahahaa2moOr solve by allowing mcp to drive already authed session (using a legit user)?
Comments
This works for non-authenticated sites but wouldn't work for anything behind a login wall that requires a JWT or similar - right?
are you asking if it will magically allow you to bypass authentication? only if the service is vulnerable to auth bypass and you don't mind breaking multiple laws.
Or solve by allowing mcp to drive already authed session (using a legit user)?