Here is the detail that matters, and it is easy to skim past. The endpoint is scoped to a connection. Each connection has its own endpoint, its own token, and must be configured separately.
Sit with that for a moment, because it constrains everything downstream. If the endpoint is connection-scoped, then every control you want to impose has to be a property of that connection — or it does not exist. There is no layer between the agent and the connection where you can insert a policy. The connection is the policy surface.
For twenty years a saved connection has been a convenience. A bookmark with a password attached. Something a developer creates without thinking, copies between machines, and names “prod-copy-2.” The security boundary lived somewhere else entirely — in the approval workflow, in the reviewer, in the simple physical fact that a human being can only type so fast.
That is over. The connection is now a policy object, and most organizations are still treating it like a bookmark.