context7 for ork-codex: where the token goes, and what actually grants a tool

The codex plugin had no documentation access at all. A search for context7 across the ork-codex tree returned zero files, while the ork plugin already granted it to 22 agents. Pick a token delivery, a tool-name form, a machine state and an auth state: the config renders live, the grant table recomputes, and the probe pane shows the one call that can tell a working key from a dead one.

The gap this PR closes

Counts measured on the ork plugin before this work. The 5-file gap is agents advertising context7 in prose while their frontmatter scopes them to a different server, which is the same silent-failure shape the tool filter below can reproduce.