LiftLab Connect MCP Server
An OAuth-protected Model Context Protocol endpoint served from LiftLab's own hostname connect.liftlab.com, discovered by certificate-transparency enumeration rather than from documentation. An anonymous tools/list returns 401 with a correct RFC 9728 Bearer challenge, so the endpoint is live and the tool list is auth-gated; no tools are recorded because none could be read without a customer token, and none were invented. The single advertised OAuth scope is "claudeai". The host is a white-labeled TapClicks portal (CNAME to liftlabtrial.tapclicks.com), so LiftLab serves this surface under its own domain and OAuth issuer while the underlying platform is vendor-supplied. LiftLab publishes no documentation for it anywhere.