MCP
MCP JSON-RPC (POST)
Streamable HTTP MCP on the same host as /v1, with the same auth plugin. Body and status follow the MCP transport (JSON or SSE), not the notes error envelope. Tools are the cloud read registry over the bound vault; agents write notes through HTTP /v1, not MCP.
POST
MCP JSON-RPC (POST)
Authorizations
Static bearer, WorkOS JWT, or open local when AUTH_REQUIRED is off and no static tokens are set. The token selects the vault; paths do not include vault_id.

