ProtectedblockedProtectedfrontendProtected ReadonlyloggerProtectedmanagerProtectedmcpProtectedmessageProtectedoauthProtected ReadonlypendingProtectedpreferenceProtectedprevProtectedserverProtectedworkspaceProtectedworkspaceProtectedattemptAutostart path for a single server. For non-OAuth servers, just calls startServer. For OAuth
servers, either skips the silent start when no usable credentials exist (and prompts the user)
or attempts the silent start; if the silent start lands in AuthenticationRequired, prompts
the user via a notification with a Sign In action.
ProtectedautoProtectedconvertProtecteddismissDismisses sign-in prompts whose server was removed or whose start attempt has concluded.
ProtectedenqueueReturns the restrictions currently active due to workspace trust. Called when building the restricted mode status bar tooltip.
ProtectedhandleCalled when the application is started. The application shell is not attached yet when this method runs. Should return a promise if it runs asynchronously.
ProtectedpromptPrompts the user to authorize the given MCP server via a non-modal notification with a 'Sign In' action. Dismissed automatically once the start attempt concludes, see dismissSettledSignInPrompts.
ProtectedstartProtectedstopProtectedsyncProtectedupdateProtectedupdate
Pending OAuth sign-in prompts, keyed by server name.