observe, because observing costs
nothing, and cannot be promoted to a rung that refuses.
What a certificate records
The hashes are the point. A certificate that does not pin what it certified is
an opinion with a date on it.
Documentation Index
Fetch the complete documentation index at: /llms.txt
Use this file to discover all available pages before exploring further.
May this agent be given authority at all? One check, called from every place authority is issued or escalated.
observe, because observing costs
nothing, and cannot be promoted to a rung that refuses.
| Field | What it is |
|---|---|
agent_id, environment | Which agent, in which environment |
issued_by, issued_by_email | The human who certified it. Not a service account |
basis | What the certification rests on |
provenance_version | The model provenance bound at the time |
manifest_hash | The MCP tool manifest as it stood |
content_hash | The agent’s own content, pinned |
market_profile | Which jurisdiction it was certified for |
checks | What was actually verified |
revoked_at, revoked_by | Certification is revocable |
POST /v1/grants issue
POST /v1/grant-families/{id}/instantiate issue, from a template
POST /v1/grants/{id}/delegate issue, to a DIFFERENT agent
POST /v1/grants/{id}/enforcement escalate an existing grant
observe, which
needs no clearance by design, then promote. A control with a two-step path
around it is worse than no control, because the console reports the grant as
enforcing either way.GET /v1/agents/{agent_id}/certification
POST /v1/agents/{agent_id}/certification
GET /v1/certificates
POST /v1/certificates/{certificate_id}/revoke
