2. Supply Chain & Extensibility
How to govern connectors, MCP servers, plugins, skills, extensions, hooks, and agent frameworks as a software supply chain with real attack surface.
Last reviewed: August 18, 2026
Articles in this section
Frequently asked questions
What belongs in the AI supply-chain register? Record every connector, MCP server, skill, plugin, hook, model, SDK, container, template, and agent framework with its owner, source, version, permissions, data reach, review date, and update trigger. Include components supplied through marketplaces and repositories.
When must an extension be reviewed again? Review after a material permission, owner, source, version, signing, tool, dependency, or update-channel change. Re-run the review after incidents and when a component begins handling a new data class or production action.
Related handbook guidance
Last updated
Was this helpful?