Bill Maxwell

Bill Maxwell

Articles

Author: Bill Maxwell

The Client Zoo Problem: Why Enterprise AI Needs Central Skills Management

As AI clients multiply, enterprise knowledge gets trapped in silos. See how centralized skills management helps teams govern, distribute, and reuse AI workflows.

Read More

Author: Bill Maxwell

MCP Server Supply Chain Security: The Pipeline Behind a Trusted Catalog

Protect your MCP server catalog with supply chain controls: artifact signing, CI pipelines, vulnerability scanning, and governance.

Read More

Author: Bill Maxwell

MCP Enterprise Architecture That Actually Works: The Complete Reference Guide

The final post in Obot’s 10-part MCP series. Identity, access, audit, and data layers in one reference architecture, with a checklist to evaluate gaps.

Read More

Author: Bill Maxwell

MCP PII Data Security: How Tool Calls Leak PII and How to Stop It

MCP tool calls can silently expose sensitive data. Learn how PII leaks into LLM context and how to prevent it with control plane filtering.

Read More

Author: Bill Maxwell

MCP Prompt Injection: Why Your AI Agents Can’t Defend Against It Alone

MCP prompt injection is a structural risk for AI agents. Learn how attackers exploit autonomous tool retrieval and how to defend with layered infrastructure controls.

Read More

Author: Bill Maxwell

Fine-Grained MCP Access Control: Beyond Server-Level Permissions

How tool-level permissions, IdP-mapped registries, and agent-scoped tool sets enforce least privilege in MCP at enterprise scale.

Read More

Author: Bill Maxwell

MCP Enterprise Security: What SecOps Will Ask Before Approving MCP in Production

Every question SecOps will ask before approving MCP in production, with the answers that shorten the review cycle.

Read More

Author: Bill Maxwell

MCP Enterprise IdP Integration for Third-Party Servers

Learn how to navigate MCP enterprise IdP integration, enabling efficient access for your team while reducing infrastructure burden.

Read More

Author: Bill Maxwell

MCP Token Security: Why Your Clients Shouldn’t Hold OAuth Tokens

Understand MCP token security and learn how to effectively manage OAuth access tokens after client authentication.

Read More

Author: Bill Maxwell

MCP OAuth Dynamic Client Registration: Why it Matters and How To Accomplish it with Entra

MCP requires Dynamic Client Registration; Microsoft Entra ID doesn’t support it. A control plane bridges the gap for enterprises.

Read More

Author: Bill Maxwell

MCP Identity Management at Enterprise Scale: Solving the OAuth Sprawl Problem

Learn how to navigate MCP identity management challenges with insights for managing multiple servers effectively.

Read More

Author: Bill Maxwell

Why MCP Authentication Is Harder Than It Looks

MCP development starts fast. Then you hit OAuth. Here’s what production-ready MCP authentication actually requires — and why the complexity multiplies when you’re running more than one server.

Read More