I believe echoangle’s concern is about the security and privacy of the LLM using the data, not the MCP server itself.
These are tools where the AI may tell you it’s doing one thing and then accidentally do another (I had an LLM tell me it would make a directory using mkdir but then called the shell command kdir (thankfully didn’t exist)). Sandboxing MCP servers is also important!