X-AG-API-Key (ag_…, not TrustGuard tgk_…).
Workspace mcp.json
Create .vscode/mcp.json (or the user MCP config your VS Code version uses):
"X-AG-Gateway-Slug": "<gateway-slug>" in headers.
Reload the window. In Copilot Chat, enable the TrustGate MCP server if it is listed but
disabled. First OAuth connect may open a browser.
Exact keys (servers vs mcpServers) depend on VS Code / Copilot version; if the file is
ignored, paste the JSON tab from consumer Connect into the MCP config UI.