What ports as-is
- A two-scheme auth policy: signed-in bearer token or a static key
- Per-deployment-slot resource identity for several hostnames from one image
- An endpoint verifier checking access, challenge, tool count and wrong key
- A merge-not-overwrite installer for the desktop chat client
What we build for you
- Which domain the tools expose and their descriptions
- The hostnames and deployment-slot layout
- The identity tenant and app registrations



