{"issuer":"https://groundcontrol.so/v1/mcp/oauth","authorization_endpoint":"https://groundcontrol.so/v1/mcp/oauth/authorize","token_endpoint":"https://groundcontrol.so/v1/mcp/oauth/token","jwks_uri":"https://groundcontrol.so/v1/mcp/oauth/jwks","registration_endpoint":"https://groundcontrol.so/v1/mcp/oauth/register","revocation_endpoint":"https://groundcontrol.so/v1/mcp/oauth/revoke","revocation_endpoint_auth_methods_supported":["none"],"service_documentation":"https://groundcontrol.so/docs/mcp-bridge#headless-customer-origination","clutch_api_base_url":"https://api.groundcontrol.so","scopes_supported":["mcp:bridge.read","mcp:bridge.call","laps.tenant_agent.revision_content.read","governed_execution.write","laps.library.write","laps.prompt.write","laps.tenant_agent.write","laps.workflow_agent_binding.write","project_controls.approval.decide","project_controls.approval.open","project_controls.event.ingest","project_controls.hold.open","project_controls.hold.release","project_controls.initiative.write","project_controls.package.promote","project_controls.package.read","project_controls.package.write","project_controls.package_review.decide","project_controls.review_authority.admin","project_controls.saved_view_definition.write","project_controls.work_menu.read","project_controls.workflow.publish","project_controls.workflow.write","saas.api_key.create","worker_facade.claim","worker_facade.write"],"response_types_supported":["code"],"grant_types_supported":["authorization_code","refresh_token","client_credentials"],"code_challenge_methods_supported":["S256"],"token_endpoint_auth_methods_supported":["none","client_secret_basic","client_secret_post"],"token_endpoint_auth_signing_alg_values_supported":[],"resource_indicators_supported":true,"client_id_metadata_document_supported":false,"clutch_customer_origination":{"kind":"clutch.customer_account_registration","http_method":"POST","entry_endpoint":"https://api.groundcontrol.so/v1/auth/local/public/registrations","route_sequence":["POST /v1/auth/local/public/registrations","POST /v1/auth/local/public/email-verification-consumptions","POST /v1/auth/local/public/sessions","POST /v1/service-principals","POST /v1/api-keys"],"documentation":"https://groundcontrol.so/docs/mcp-bridge#headless-customer-origination","catalog_shaping":"The catalog profile is shaped by the caller's principal kind and the live route declarations. For service-principal callers, mutating tools without a defined service-principal scope are omitted from the profile. The served list is further narrowed by the credential's granted action scopes. See the \"Tool required scopes\" section of the MCP schema reference at https://groundcontrol.so/docs/mcp-bridge#tool-required-scopes for each tool's declared scope."},"clutch_machine_credential_origination":{"kind":"clutch.service_principal_api_key","grant_type":"client_credentials","http_method":"POST","entry_endpoint":"https://api.groundcontrol.so/v1/machine-credentials/enrollments","route_sequence":["POST /v1/machine-credentials/enrollments"],"issued_by_registration_endpoint":false,"documentation":"https://groundcontrol.so/docs/mcp-bridge#machine-credentials","methods":[{"method":"enrollment_redemption","requires":"enrollment_token","single_use":true,"scopes_policy":"fixed_bundle","scopes_granted":["mcp:bridge.read","mcp:bridge.call","worker_facade.claim","governed_execution.read","governed_execution.write"],"object_scoped_grants_accepted":false,"sequence":["POST /v1/machine-credentials/enrollments"],"requires_issued_by":["POST /v1/machine-credentials/enrollment-tokens"],"requires_issuer_role":"owner","requires_issuer_holds":"tenant_actor_session","requires_issuer_origination":"clutch_customer_origination"},{"method":"in_tenant_service_principal","requires":"tenant_actor_session","single_use":false,"scopes_policy":"caller_selected","object_scoped_grants_accepted":true,"sequence":["POST /v1/service-principals","POST /v1/api-keys"]}]},"clutch_dcr_redirect_uri_policy":{"loopback":{"schemes":["http","https"],"hosts":["localhost","127.0.0.1","::1"],"any_port":true,"fragment_forbidden":true},"hosted_exact":["https://claude.ai/api/mcp/auth_callback","https://www.cursor.com/agents/mcp/oauth/callback","cursor://anysphere.cursor-mcp/oauth/callback"],"documentation":"https://groundcontrol.so/docs/mcp-bridge#oauth-setup-shape"}}
