FlatRun should expose its own MCP server whose tools are the same set the assistant can call. Anything an operator can do through the assistant they can then also do from any MCP client, and the reverse: practically anything on the server, bounded only by the caller's permissions. The assistant and the MCP server are two front doors onto one tool set, not two tool sets.
Checklist
Related
FlatRun should expose its own MCP server whose tools are the same set the assistant can call. Anything an operator can do through the assistant they can then also do from any MCP client, and the reverse: practically anything on the server, bounded only by the caller's permissions. The assistant and the MCP server are two front doors onto one tool set, not two tool sets.
Checklist
Related