Assignment
Use an MCP SDK version you pin in the project. Expose a synthetic ticket lookup and a policy resource; no production credentials are needed.
Build sequence
- Connect a host/client harness and list the available capabilities.
- Invoke lookup with valid, invalid, and unauthorized ticket IDs.
- Change a schema and confirm the integration detects the mismatch.
- Return instruction-like text from a resource and verify it cannot expand the tool allowlist.
Acceptance checks
- The repository records protocol and SDK versions and reproducible setup.
- Discovery never grants additional application permissions automatically.
- Credentials and synthetic tenant data are isolated by the integration boundary.
Evidence to keep
Submit the working artifact or decision document described above, the inputs used, and the observed results for every acceptance check. Include one failed attempt and the change you made after investigating it. Label fixture-based outcomes separately from live-system measurements. These artifacts become part of your final portfolio review.