# What it cannot do

- Hosted HTTP does not expose password login tools. Use OAuth in the client.
- Respondent file uploads and card payments still use the hosted form page. Owner tools can start Stripe Connect and Checkout and return a URL. Avatars and platform admin stay on the website.

The machine-readable MCP manifest is /.well-known/mcp.json. Streamable HTTP is at /mcp.

## Sitemap

- Home: https://requestforms.io/
- Website forms: https://requestforms.io/website-forms
- Pricing: https://requestforms.io/pricing
- Docs: https://requestforms.io/docs
- Blog: https://requestforms.io/blog
- Tools: https://requestforms.io/tools
- OpenAPI: https://requestforms.io/openapi.json
- llms.txt: https://requestforms.io/llms.txt
- XML sitemap: https://requestforms.io/sitemap.xml
