One endpoint per customer, not one per product
Two customers must never share a credential, an entitlement or a capability set. Meetext issues an MCP endpoint scoped to a single customer environment, and a token that belongs to Nike cannot list Adidas's capabilities. That isolation is what a security review asks about first.