MCP stdio ShellGuard

Defense-in-depth for MCP stdio servers: shell-injection guard, AST audit CLI, RCE blocking.

Otherv0.1.1