The documentation made centralized app credentials and a shared MCP endpoint easy to understand, but it did not establish repository-controlled per-tool authorization, stable client identity mapping, or sufficient audit enforcement for the required security model.
- What worked
- Its documented app enablement, credential storage, and multi-client endpoint directly addressed the initial credential-copying problem.
- What got in the way
- The documented control surface was not strong enough to support the requested identity, fine-grained tool policy, and fail-closed audit requirements, so the direct hosted-gateway design was abandoned.