0Pricing
MCP Academy · 강의

최소 권한의 도구 접근

각 도구에 실제로 필요한 권한만 부여합니다.

최소 권한의 도구 접근은(는) CoddyKit의 무료 MCP Academy 강의입니다. 이것은 4개 중 2번째 강의입니다. 아래에서 전체 강의를 무료로 읽을 수 있으며, 내장 코드 에디터와 24/7 AI 튜터와 함께 브라우저에서 직접 실습할 수 있습니다. 이 강의는 MCP Academy 학습 경로의 일부이며, 진행 상황이 웹과 CoddyKit 앱에 동기화됩니다. MCP Academy 강의에는 총 4개의 강의가 포함되어 있습니다.

이 강의의 일부는 아직 번역되지 않았으며 영어로 표시됩니다.

The Principle

Least privilege means each tool gets only the permissions its job requires, and nothing more. If a tool is tricked, the blast radius stays small. 🔒

Narrow the Scope

A tool that reads one report folder should not be able to touch the whole disk. Give it the smallest scope that still gets the work done, then stop there.

Read vs Write

Split read and write into separate tools when you can. A read-only tool that gets injected can leak data, but it cannot quietly change or delete anything.

Scope Credentials, Not Just Tools

Privilege also lives in the token your server holds. Use a database role or API key scoped to exactly the operations needed, so a slip cannot reach unscoped resources.

A Read-Only Tool

This tool can only look up an order, never modify one. The function body defines the ceiling on what the model can do through it.

@mcp.tool()
def get_order(order_id: int) -> str:
    "Read one order by id."
    return db.fetch_order(order_id)

Avoid the God Tool

One run_anything tool that executes arbitrary code or SQL hands the model total control. Prefer many narrow tools with fixed, predictable behavior instead.

Allowlists Over Blocklists

Decide what is permitted, not what is forbidden. An allowlist of safe operations is far easier to reason about than trying to enumerate every dangerous one.

Constrain the Filesystem

If a tool reads files, pin it to one base directory and reject paths that escape it. A bounded root stops a tool from wandering into system files.

Separate Tools by Sensitivity

Keep low-risk lookups apart from high-risk actions. You can then apply stricter checks and confirmation to only the sensitive tools that truly need them.

Per-User Authorization

The server, not the model, decides who may do what. Check the caller's identity before acting so a tool cannot reach data outside that user's permissions.

Default Deny

Start every new tool from the assumption that it can do nothing, then grant exactly what it needs. A default-deny stance keeps accidental power from creeping in.

Quick Check

Pick the design that best follows least privilege.

Recap

Give each tool the smallest scope, split read from write, scope your credentials, and default to deny. Least privilege keeps any single mistake contained. ✅

자주 묻는 질문

“최소 권한의 도구 접근” 강의는 무료인가요?

네 — “최소 권한의 도구 접근” 전체 내용을 이 웹사이트에서 무료로 읽을 수 있습니다. 인터랙티브하게 실습하려면(내장 코드 에디터와 24/7 AI 튜터), CoddyKit PRO로 업그레이드하면 MCP Academy 강의 전체를 잠금 해제할 수 있습니다. MCP Academy 강의에는 총 4개의 강의가 포함되어 있습니다.

“최소 권한의 도구 접근”에서 뭘 배우나요?

각 도구에 실제로 필요한 권한만 부여합니다. 브라우저에서 직접 실행하는 실습 코드로 MCP Academy을(를) 배우며, 24/7 AI 튜터가 강의를 진행하면서 질문에 답변해줍니다.

MCP Academy을(를) 시작하는 데 경험이 필요한가요?

사전 경험은 필요하지 않습니다. CoddyKit의 MCP Academy은(는) 초급자부터 고급 학습자까지를 위해 구성되어 있으므로, 여기서 시작하거나 처음부터 시작할 수 있으며 자신의 속도대로 진행할 수 있습니다. 이것은 4개 중 2번째 강의입니다.

“최소 권한의 도구 접근” 강의는 얼마나 걸리나요?

대부분의 CoddyKit 강의는 약 5~10분이 소요됩니다. 각 강의는 간결하고 인터랙티브하여 꾸준한 진행이 가능하며, 웹과 앱에서 중단한 부분부터 바로 시작할 수 있습니다.

이 MCP Academy 강의에서 코드를 작성하고 실행할 수 있나요?

네. 모든 MCP Academy 강의에는 내장 코드 에디터가 포함되어 있으므로, 브라우저에서 바로 실제 코드를 작성하고 실행한 후 즉시 AI 피드백을 받을 수 있습니다 — 로컬 설정이 필요 없습니다.

이 강의의 모든 강의

  1. MCP 고유의 위협
  2. 최소 권한의 도구 접근
  3. 모든 항목 검증 및 정제하기
  4. 파괴적 작업 보호하기
← MCP Academy(으)로 돌아가기