Blog

Updates, insights, and MCP know-how from the team at Stacklok

May 20, 2026

MCP access governance starts with RBAC

Hand-written Cedar policies won’t scale past a handful of MCP servers. Here’s how Stacklok Enterprise brings RBAC to ToolHive and what it looks like in practice.

May 19, 2026

Stacklok and Anthropic MCP Tunnels: securely connect Claude to everything behind your firewall

You’re invested in Claude, including Claude Code, Claude Cowork, Claude Design. To make it as valuable as possible, you need to connect it to your internal systems and data. Traditionally …

May 13, 2026

Optimizing multi-MCP workflows

Managing dozens of MCP servers at scale creates real costs. Learn how a layered gateway, optimizer, and composite tools keep complexity under control.

May 11, 2026

MCP server governance starts with discovery

When MCP server URLs live in Slack threads, nobody knows what’s approved. See how Stacklok’s Registry Server solves discovery and access control at scale.

May 07, 2026

Enforcing MCP tool annotation policies with Cedar

MCP tool annotations declare what a tool does. Here’s how to enforce Cedar policies against those declarations using Stacklok’s ToolHive Kubernetes operator.

May 06, 2026

Inside Dockyard: How Stacklok + Cisco AI Defense are securing MCP servers and skills

Stop shipping unscanned MCP servers and hoping for the best. Dockyard gives every server signatures, SBOMs, and security scans before it reaches your agents.