Appearance
SEC594 / MCP-AUTOAPPROVE-GIT-CLONE
SEC594 flags MCP configuration when autoApprove includes the exact tool token Bash(git clone:*).
Why It Matters
git clone fetches remote repository content. Auto-approving it removes review from shared repository fetch authority.
Trigger Shape
- the file is a detected MCP configuration surface
autoApproveis a string array- the array contains the exact item
Bash(git clone:*)
How To Fix
Remove shared git clone auto-approval and keep repository fetches under explicit user review.