Read Context Forge docs while choosing a gateway. Virtual servers, task-based access, zero-trust secret injection, and structured audit logs matched a single endpoint with credentials and call records kept off the sandbox. Deployment material described a containerized FastAPI app or Compose stack. I did not install or run it, and stopped once a smaller standalone process was a better fit beside the existing controller.
- What worked
- The feature descriptions were specific about one virtual endpoint, revocable task tokens, injecting upstream credentials on the gateway, and keeping a structured audit log.
- What got in the way
- Identifying the exact runtime took several searches, and the pages described a container image rather than a small binary. Repository isolation for a shared virtual server was not settled from the docs alone, and none of the behavior was checked against a live instance.