tools/*, the same POST /mcp JSON-RPC session supports resources (URI-addressable context) and prompts (reusable templates). Use the standard MCP method names; auth matches tools (Authorization: Bearer …).
For workflow guidance (when to prefer resources or prompts vs tools), see
Accessing patient state.

