The sfr module has one policy set no matter whether the ASA is single or multiple context.
As long as you're OK with that, then just tell each context to send traffic to the sfr module (or not) according to your security requirements.
The sfr module does know enough to send a given flow back to the proper ASA context.