SI Readiness by MCP-Tool
Agent-facing authentication
Is there a documented way for an agent to authenticate?
Why it matters
Inside the page the browser session already carries the login, which is WebMCP's quiet advantage. Everything outside the page still needs a stated path — otherwise integrators guess, and guessing means credentials in places you did not intend.
How to fix it
Publish OAuth discovery metadata, or an auth.md describing how machine clients obtain access.