Notes: Establish identity, version, tool, safety, and tracing controls before adding APIM and MCP.
Notes: The absent write operation and downstream authorization enforce the boundary. Prompt wording does not.
Notes: The endpoint identity and project identity do different jobs. The control ends at the direct read API.
Notes: The direct tool is application-only. Delegated user authorization needs a separate implementation.
Notes: Instructions reinforce refusal. Tool absence and downstream authorization enforce the write boundary.
Notes: The implementation guide carries paired PowerShell and Bash commands.
Notes: One observable standard-mode check is enough.
Notes: Product, platform, identity, and operations owners confirm that no consumer uses the endpoint before removal.