# Vanderhall Motor Works > Vanderhall Motor Works is a privately held American vehicle manufacturer founded in 2010 by Steve Hall and headquartered in Provo, Utah. It hand-builds three-wheeled autocycles (Laguna, Venice, Venice Speedster, Carmel, Santarosa), the all-electric Edison, and the quad-motor Brawley off-road UTV, selling through an independent dealer network. Vanderhall runs no public developer program: it publishes no OpenAPI, no API reference, and no SDKs. Its one machine-readable surface is an OAuth-protected Model Context Protocol endpoint on its internal Admin Portal. This file was GENERATED by API Evangelist from probed evidence. Vanderhall does not serve an llms.txt of its own — https://www.vanderhallusa.com/llms.txt returns a SiteGround captcha challenge (HTTP 202) and https://portal.vanderhallusa.com/llms.txt, https://dealer.vanderhallusa.com/llms.txt and https://shop.vanderhallusa.com/llms.txt all return HTTP 404. ## Agent surface - [Vanderhall Admin Portal MCP endpoint](https://portal.vanderhallusa.com/mcp): Live JSON-RPC 2.0 MCP server. OAuth-gated — anonymous `tools/list` and `initialize` return HTTP 200 carrying JSON-RPC error -32001 "Unauthorized: missing bearer token". The tool set and its input schemas are NOT public and have not been guessed. - [OAuth authorization server metadata](https://portal.vanderhallusa.com/.well-known/oauth-authorization-server): RFC 8414. Issuer https://portal.vanderhallusa.com; authorization code + refresh token; PKCE S256; public clients; dynamic client registration; one scope, `mcp`. - [OAuth protected resource metadata](https://portal.vanderhallusa.com/.well-known/oauth-protected-resource): RFC 9728. Declares https://portal.vanderhallusa.com/mcp as the protected resource. - [Dynamic client registration](https://portal.vanderhallusa.com/oauth/register): RFC 7591, live and validating client metadata. ## Human surface - [Vanderhall USA](https://vanderhallusa.com/): Marketing and product site. Behind a SiteGround captcha for automated clients — every path answers HTTP 202 with a meta-refresh challenge shell. - [Dealer Portal](https://dealer.vanderhallusa.com/): Authenticated dealer login. - [Admin Portal](https://portal.vanderhallusa.com/): Authenticated internal admin login; host of the MCP endpoint. - [Parts and accessory shop](https://shop.vanderhallusa.com/) - [Contact](https://dealer.vanderhallusa.com/contact/) - [Privacy Policy](https://vanderhallusa.com/privacy-policy-2023/) - [Owner's manuals](https://vanderhallusa.com/vanderhall-owners-manuals/): Product documentation, not API documentation. - [GitHub organization](https://github.com/vanderhall): One public repository, App-libraries ("Libraries We Use") — third-party dependencies, not a published SDK. ## API Evangelist artifacts - [apis.yml](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/apis.yml) - [MCP manifest](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/mcp/vanderhall-motor-works-mcp.yml) - [Authentication profile](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/authentication/vanderhall-motor-works-authentication.yml) - [OAuth scopes](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/scopes/vanderhall-motor-works-scopes.yml) - [Well-known index](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/well-known/vanderhall-motor-works-well-known.yml) - [Conformance](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/conformance/vanderhall-motor-works-conformance.yml) - [Error catalog](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/errors/vanderhall-motor-works-problem-types.yml) - [Conventions](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/conventions/vanderhall-motor-works-conventions.yml) - [Lifecycle](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/lifecycle/vanderhall-motor-works-lifecycle.yml) - [Rate limits](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/rate-limits/vanderhall-motor-works-rate-limits.yml) - [Plans and pricing](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/plans/vanderhall-motor-works-plans-pricing.yml) - [Packages](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/packages/vanderhall-motor-works-packages.yml) - [Domain security](https://raw.githubusercontent.com/api-evangelist/vanderhall-motor-works/refs/heads/main/security/vanderhall-motor-works-domain-security.yml) ## Optional — what is NOT here - No OpenAPI, Swagger, GraphQL SDL, AsyncAPI, Protobuf or WSDL. All probed and absent; see the well-known index and the coverage note in apis.yml. - No A2A agent card. `/.well-known/agent-card.json` and `/.well-known/agent.json` return 404 on the portal, dealer and shop hosts and a captcha shell on the marketing host. Nothing was authored on Vanderhall's behalf. - No security.txt, no status page, no changelog, no CLI, no sandbox, no first-party SDK, no Postman collection.