Why Your MCP Client Needs a Sandbox | COFYT