Notes from building the platform
Occasional writing about the Model Context Protocol, what it actually takes to run an MCP server in production, and building infrastructure that stays inside Europe.
Latest post
/Thijs Daniels
MCP Apps: extend your product experience into ChatGPT and Claude
MCP lets an assistant use your product. MCP Apps lets it show your product. What that means for the interface, the design and the brand that used to live only on your own website.
Read the post/Daniel Steman
PII scrubbing on foro.sh: what gets caught, and what does not
The tool layer sees a project's real data on every tools/call. Two detection tiers, checksum-gated regex matching and NER, mask structured PII before it is stored, and fail closed rather than fail silent. What actually gets caught, and the honest limits of what does not.
Read the post/Daniel Steman
MCP v2 in practice: what the 2026-07-28 spec changes, and what it does not
The 2026-07-28 revision drops MCP sessions and the initialize handshake, replaces server-initiated requests with retries, and starts a twelve-month clock on Roots, Sampling and Logging. What that means for a server you have already deployed.
Read the post/Thijs Daniels
Data sovereignty is a property of the tool layer, not the cloud region
Picking an EU region from a US-parented cloud answers a residency question, not a sovereignty one. Where an MCP server actually runs, who authenticates its calls, and who holds the encryption keys decide whose law reaches your data.
Read the post
Your first server, live in a minute.
Sign in, pick your project, click Deploy. No credit card required.