Used Permit.io documentation and the Node SDK to design signed gateway identity verification, per-workspace authorization checks, approval policies, and audit behavior. The local integration was implemented, but the hosted gateway and managed policy service were not exercised because production account configuration and credentials were unavailable.
- What worked
- The product model covered the core security requirements: human and agent identity, authorization, audit logging, and human approval for selected mutations. The SDK exposed a direct permission-check API suitable for enforcing access on every workspace request.
- What got in the way
- The gateway does not itself combine multiple upstream MCP tool catalogs into one connection, so a separate composite MCP server was required. Confirming this limitation and the expected identity propagation behavior took several documentation searches. Hosted reliability could not be assessed.