Most of the stack exists. A few integration points to close.
🔍
Server discovery
odr mcp list / odr mcp search — MCP Registry format
ODR
Shipped
🛡️
Containment + provisioning
Agent user in separate NT session, MSIX sandboxing, IT admin controls
ODR
Shipped
⚡
Tool invocation + sessions
MCP JSON-RPC (stdio/SSE), stateful sessions, persistent connections
MCP-CLI
Shipped
🔄
Registry → config translation
Map ODR's MCP Registry JSON to mcp-cli's config format + annotate containment
MCP-CLI
Needed
🤖
Transparent provisioning
Auto-provision agent user on first call to contained server (detect via package_family_name)
MCP-CLI
Needed
📝
Clippy skill file
System prompt telling agent how to use mcp-cli (search, call-tool). No MCP concepts.
CLIPPY
Needed