Hosted MCP and native WebMCP join the existing local transport.
Hosted endpoint: https://mcp.pillowfort.xyz/mcp (issued operator key or OAuth authorization). Local package: @ontologic/pillowfort-agent@1.1.0. Registry: io.github.slee1996/pillowfort 1.1.0.
Native room tools use browser-provided WebMCP APIs; real Chrome 152 experimental-feature invocation was verified. No polyfill.
Managed hosted participants have explicit custody disclosure, revocable keys/OAuth PKCE, principal isolation, bounded sessions and browser budgets, and verified browser cleanup after DELETE, revocation, and idle expiry.
Verification: 456 app tests, 6 marketing tests, 4 real-Worker/browser security regressions, and real local/hosted/native room workflows. Setup and limits: https://about.pillowfort.xyz/agents.