Most of the stack exists. A few integration points to close.
🔍
Server discovery
odr mcp list / odr mcp search — MCP Registry format
ODR
Shipped
🛡️
Containment + provisioning
Agent user in separate NT session, MSIX sandboxing, IT admin controls
ODR
Shipped
⚡
Tool invocation + sessions
MCP JSON-RPC (stdio/SSE), stateful sessions, persistent connections
MCP-CLI
Ready
🔄
Registry → config translation
Map ODR's MCP Registry JSON to mcp-cli config + annotate containment
MCP-CLI
Needed
🤖
Transparent provisioning
Auto-provision agent user on first call to contained server (via package_family_name)
MCP-CLI
Needed
📝
mcp-cli skill file
System prompt: how to use mcp-cli (search, call-tool). No MCP concepts exposed.
MCP-CLI
Needed