{
 "license": "CC-BY-4.0",
 "attribution": "Fide AI, Agentic Cyber Explorer",
 "url": "https://agentic-cyber-explorer.pages.dev/events/mcp-spec-authorization-update-2025/",
 "asOf": "2026-09-26",
 "id": "mcp-spec-authorization-update-2025",
 "date": "2025-06-18",
 "datePrecision": "day",
 "title": "MCP specification revision classifies servers as OAuth resource servers and adds security best practices",
 "lane": "policy",
 "kind": "standard",
 "summary": "The 2025-06-18 revision of the Model Context Protocol specification classifies MCP servers as OAuth resource servers with protected resource metadata, and requires clients to implement RFC 8707 resource indicators so malicious servers cannot obtain tokens meant for others. It also clarifies authorization security considerations and adds a security best practices page.",
 "whyItMatters": "It is the main protocol-level change addressing token misuse between MCP clients and servers.",
 "actors": [
  "model-context-protocol-project",
  "anthropic"
 ],
 "topics": [
  "tool-and-mcp-security",
  "standards-and-guidance"
 ],
 "atlas": [
  "tools",
  "credentials"
 ],
 "artifacts": [
  "model-context-protocol"
 ],
 "sources": [
  {
   "url": "https://modelcontextprotocol.io/specification/2025-06-18/changelog",
   "publisher": "Model Context Protocol",
   "title": "Key Changes (specification 2025-06-18)",
   "date": "2025-06-18",
   "type": "primary",
   "accessed": "2026-09-25"
  }
 ],
 "keyFacts": [
  {
   "fact": "Changes include classifying MCP servers as OAuth Resource Servers (PR #338) and requiring RFC 8707 Resource Indicators in clients (PR #734).",
   "locator": "Major changes, items 3-4"
  },
  {
   "fact": "Adds clarified authorization security considerations and a new security best practices page.",
   "locator": "Major changes, item 5"
  }
 ],
 "significance": 3,
 "fideQuestions": [],
 "methods": [
  "tool-poisoning"
 ],
 "review": "assistant-drafted",
 "addedOn": "2026-09-25"
}