Log reviews from a low-traffic host show probes for MCP, assistant configs, and exposed LLM endpoints, a pattern that matters most when it can be chained into classic SSRF and cloud-token risk.