I was running a pool of Claude Code agents and realized every one of them held every credential I'd configured. scoped-mcp is what I built to fix that — and I built it using the same multi-agent pattern it now secures.
Your AI Agent Has Your API Keys (And So Does Every Other Agent)