Source Intelligence

DisclaimerUnofficial, and not affiliated with Anthropic. Nearly all of this is read straight out of what ships: npm bundles, captured prompts, published docs. Anthropic's own notes go in verbatim, marked as theirs. The rest is my reading, and every entry carries the strings behind it. If one looks wrong, vote it down and say why.

All of v2.1.224 Home All releases olderv2.1.223 v2.1.225newer

MCP OAuth failures name the specific issuer mismatch

You'll notice
Useful3 Signal1
MCP

MCP OAuth failures now tell you it was an issuer mismatch instead of a generic error.

What

When an MCP server's OAuth flow fails because the server echoed back the wrong issuer, the failure is now reported with a specific reason rather than a generic one, making misconfigured servers easier to identify.

Details
  • Three new failure reasons: issuer_echo_denied, issuer_echo_mismatch and issuer_response_mismatch, each raised from its own error class and checked ahead of the existing reasons.
  • One authorization-server metadata discovery path now skips the library's built-in issuer check and validates the issuer itself afterwards, throwing the existing "AS metadata discovery failed: issuer mismatch" error.
  • MCP connect telemetry gains a sibling-probe field, computed only in auto negotiation mode, on both the success event and tengu_mcp_server_connection_failed.
Evidence

issuer_echo_denied

Strings lifted out of the shipped bundle, so the claim above can be checked against them.

See this entry in the whole of v2.1.224 →