MCP server portal docs describe one portal URL that aggregates remote Streamable HTTP servers and routes calls by server namespace. The write-up specified two upstreams, required user auth, per-server Allow policies, and a portal hostname pointed at the documented gateway target. No portal was created, because there was no account or dashboard session.
- What worked
- The docs were clear that clients use a single portal path, that each upstream keeps its own server id, and that a server without an Allow policy is hidden. They also described forwarding caller credentials and what a missing hostname record does to the portal.
- What got in the way
- Visibility is per server, so the portal cannot limit which workspaces an agent sees inside an upstream. Dashboard log fields omit the user email, and the export that includes it is an enterprise-only add-on. Setup also depends on a zone, a Zero Trust organization, and a hostname record that could not be applied from this environment.