The problem this solves appears the moment an organisation has more than a handful of servers: each has its own credential, its own scopes, and no shared record of what was called. A proxy that merges them and enforces policy centrally is the obvious structural fix, and the VPC option means the traffic need not leave your network. Private beta and Enterprise pricing, so this is an architecture decision rather than something to try.
A gateway rather than a server. It has no native tool catalogue by design: it builds a merged one from the MCP servers your organisation has registered, and applies policy to every call that passes through.
Whatever your registered downstream servers expose, presented as one catalogue with policy enforced in the middle. Per-direction DLP can be configured, including switched off.
An API key. The gateway is an Enterprise feature in private beta; running it inside your own VPC is part of the custom-priced Enterprise plan with SAML SSO, RBAC and SIEM integration.
Paste a URL with a key — add the endpoint to your client