Plugin properties
The MCP client follows the same rules as a direct client:
mcp/. Plugin skills join direct skills from skills/. Duplicate skill names or identical connection configurations fail compilation instead of shadowing one another.
For selective approval, name the server’s original tool before any prefix. Harnest rejects unknown names after remote discovery.
Connect directly to MCP
Use a direct connection when it belongs to one agent.
Add lifecycle behavior
Use an extension for persistence, guardrails, auditing, or native middleware.