browserid MCP-auth demo

A warrant-gated MCP server built on @browserid-ng/mcp-auth — no API keys. Authority is a human's short-lived, scoped, revocable warrant; every tool call is attributed to "agent X on behalf of human Y", and a revoke at https://browserid.me/account kills the agent on its next call.

OAuth discovery: /.well-known/oauth-protected-resource · /.well-known/oauth-authorization-server. MCP endpoint: POST /mcp.

Tools: log_action (scope demo:write), read_log.