{"format":"quill-agent-manifest-v1","manifest_format_version":1,"content_sha256":"acb016849234e6a6f5d3bce1d40baa72e0594f30a6ecb5bce6fc489deeb92a6e","content_sha256_scope":"RFC 8785 canonical SHA-256 over this document with the \"content_sha256\" and \"runtime\" members removed.","generated_from":{"openapi_version":"0.3.1","generator":"scripts/generate-agent-manifest.mjs","sources":["packages/api/openapi.yaml","packages/api/src/apiKeyScopes.js","packages/schema/src/mandate.mjs","packages/schema/src/errorCodes.mjs","packages/schema/src/problemDetails.mjs"]},"servers":[{"url":"https://api.quilltasks.com","description":"Production Worker (custom domain)"}],"auth":{"credentials":[{"name":"ApiKeyAuth","type":"apiKey","in":"header","header":"X-API-Key","scheme":null},{"name":"BearerAuth","type":"http","in":null,"header":null,"scheme":"bearer"},{"name":"EmbeddedBearer","type":"http","in":null,"header":null,"scheme":"Quill-Embed"},{"name":"SessionCookie","type":"apiKey","in":"cookie","header":"quill_session","scheme":null},{"name":"SignerSessionCookie","type":"apiKey","in":"cookie","header":"__Secure-quill_signer_session","scheme":null},{"name":"FillLinkSessionCookie","type":"apiKey","in":"cookie","header":"__Secure-quill_fill_session","scheme":null}],"null_scope_is_unrestricted":true,"scope_enforcement":"routes[].scope_required is what the SHARED scoped-key middleware demands. A rail that authenticates itself (rails[].self_authenticating) enforces rails[].required_scope for every path under its prefix BEFORE that middleware runs — on those routes a null scope_required does not mean 'no scope needed'.","scopes":[{"scope":"agent:integrations:read","admitted_routes":["GET /api/admin/embedded/hosts","GET /api/admin/embedded/identity-links","GET /api/admin/google-drive/status"]},{"scope":"agent:integrations:write","admitted_routes":["DELETE /api/admin/embedded/hosts/{}","PATCH /api/admin/embedded/hosts/{}","DELETE /api/admin/embedded/sessions/{}","DELETE /api/admin/embedded/identity-links/{}","POST /api/admin/google-drive/test","POST /api/admin/google-drive/disconnect"]},{"scope":"agent:authoring:read","admitted_routes":["GET /api/records/{}/preview-designs","GET /api/records/{}/preview-designs/{}","GET /api/admin/designs","GET /api/admin/designs/{}","GET /api/admin/designs/{}/versions","GET /api/admin/designs/{}/{}","GET /api/admin/models","GET /api/admin/models/{}/versions","GET /api/admin/models/{}/meta","GET /api/admin/models/{}/{}","GET /api/admin/models/{}/{}/usage","GET /api/admin/migration/overview","GET /api/admin/families/{}/changes","GET /api/admin/families/{}/releases","GET /api/admin/designs/{}/check-findings","GET /api/admin/designs/{}/documents","GET /api/admin/designs/{}/signing","GET /api/admin/migration/batches","GET /api/admin/migration/batches/{}","POST /api/admin/model-impact-counts","GET /api/admin/concepts"]},{"scope":"agent:authoring:write","admitted_routes":["POST /api/admin/designs","POST /api/admin/designs/{}/versions","PUT /api/admin/designs/{}/{}","DELETE /api/admin/designs/{}/{}","POST /api/admin/designs/{}/{}/revert","POST /api/admin/models/{}/versions","DELETE /api/admin/models/{}","DELETE /api/admin/models/{}/{}","POST /api/admin/models/{}/{}/revert","POST /api/admin/families/{}/publish/plan","POST /api/admin/families/{}/publish/execute","POST /api/admin/models/{}/fork-draft","POST /api/admin/models/{}/discard-draft","POST /api/admin/designs/{}/discard-draft","POST /api/admin/designs/{}/fork-draft","POST /api/admin/designs/{}/checks/sweep","POST /api/admin/check-findings/{}/dispositions","POST /api/admin/designs/{}/checks/draft","POST /api/admin/migration/batches","POST /api/admin/migration/batches/{}/execute","POST /api/admin/migration/batches/{}/reverse"]},{"scope":"agent:lifecycle:read","admitted_routes":["GET /api/admin/imports","GET /api/admin/imports/{}","GET /api/admin/imports/{}/cleanup","GET /api/admin/imports/{}/media/{}","GET /api/admin/imports/{}/ir","GET /api/admin/trash","GET /api/admin/estate-memory","GET /api/admin/cleanup/impact","GET /api/admin/cleanup/draft-delta","GET /api/admin/models/{}/{}/health","GET /api/admin/designs/{}/{}/health","GET /api/admin/cleanup/journeys","GET /api/admin/cleanup/receipts","GET /api/admin/cleanup/receipts/{}","GET /api/admin/builder-sessions/{}","GET /api/admin/builder-sessions/{}/drafts","GET /api/admin/builder-sessions/{}/lineage"]},{"scope":"agent:lifecycle:write","admitted_routes":["DELETE /api/admin/imports/{}","POST /api/admin/imports/{}/drafts","POST /api/admin/imports/{}/infer","POST /api/admin/imports/{}/answers","POST /api/admin/imports/{}/decisions","POST /api/admin/imports/{}/finalize","POST /api/admin/imports/{}/fidelity","POST /api/admin/trash/purge","POST /api/admin/trash/{}/{}/restore","DELETE /api/admin/trash/{}/{}","POST /api/admin/cleanup/fixes/apply","POST /api/admin/builder-sessions","POST /api/admin/builder-sessions/{}/finalize"]},{"scope":"records:read","admitted_routes":["GET /api/records?salesforce_record_id=<id>","POST /api/records/copy-preview","GET /api/records/{}/copy-offer","GET /api/records/{}/copy","GET /api/records/{}"]},{"scope":"records:write","admitted_routes":["POST /api/records","POST /api/records/{}/copy","PUT /api/records/{}/copy/review","GET /api/records/{}?recompute=1","PUT /api/records/{}","POST /api/records/{}/form-version","POST /api/records/{}/model-version"]},{"scope":"documents:read","admitted_routes":["GET /api/records/{}/documents","GET /api/documents/{}","GET /api/documents/{}/content","GET /api/documents/{}/pdf"]},{"scope":"catalog:read","admitted_routes":["GET /api/schemas","GET /api/schemas/{}/prefill-targets","GET /api/admin/forms/{}/versions","GET /api/admin/forms/{}/{}","GET /api/admin/forms/{}/{}/passport","GET /api/admin/forms/{}/{}/health"]},{"scope":"catalog:write","admitted_routes":["POST /api/admin/forms/{}/versions","PUT /api/admin/forms/{}/{}","DELETE /api/admin/forms/{}/{}","POST /api/admin/forms/{}/{}/revert","POST /api/admin/forms/{}/fork-draft","POST /api/admin/forms/{}/{}/annotations/dry-run","POST /api/admin/forms/{}/{}/annotations/apply"]},{"scope":"reviews:read","admitted_routes":["GET /api/records/{}/reviews","GET /api/reviews/{}"]},{"scope":"schemas:read","admitted_routes":["GET /api/schemas/{}/draft","GET /api/schemas/{}/published","GET /api/models/{}/forms","GET /api/forms/{}/published"]},{"scope":"signing:read","admitted_routes":["GET /api/admin/ceremonies","GET /api/admin/ceremonies/{}","GET /api/admin/mandates","GET /api/admin/mandates/{}"]},{"scope":"fill-links:mint","admitted_routes":["POST /api/records/{}/fill-links"]},{"scope":"fill-links:mint-form","admitted_routes":["POST /api/admin/forms/{}/fill-links"]},{"scope":"embedded:sessions:mint","admitted_routes":["POST /api/embedded/sessions"]},{"scope":"embedded:identity-links:request","admitted_routes":["GET /api/embedded/identity-links/lookup","POST /api/embedded/identity-link-requests","GET /api/embedded/identity-link-requests/{}"]},{"scope":"signing:agent","admitted_routes":["GET /api/agent/library","GET /api/agent/library/{}","GET /mcp","POST /mcp","POST /a2a","POST /api/agent/sandbox","POST /api/agent/conformance","POST /api/agent/identity/bind","GET /api/agent/cleanup/findings","POST /api/agent/cleanup/plan","GET /api/agent/cleanup/why","GET /api/agent/catalogue","GET /api/agent/whoami","GET /api/agent/constraints","GET /api/agent/provenance","GET /api/agent/agents-md","POST /api/agent/dry-run","POST /api/agent/visibility/simulate","POST /api/agent/interview/plan","POST /api/agent/render/preview","POST /api/agent/documents/{}/verify-bytes","POST /api/agent/attestations/sheet","GET /api/agent/records/{}","POST /api/agent/records/{}/intake","GET /api/agent/records/{}/history","GET /api/agent/events","POST /api/agent/events/ack","POST /api/agent/leases/acquire","POST /api/agent/leases/renew","POST /api/agent/leases/release","GET /api/agent/ceremonies/{}","GET /api/agent/ceremonies/{}/documents/{}/pdf","POST /api/agent/ceremonies/{}/dry-run","GET /api/agent/ceremonies/{}/commit","POST /api/agent/ceremonies/{}/commit","PUT /api/admin/models/{}/meta","PUT /api/admin/models/{}/{}","PATCH /api/admin/records/{}","POST /api/admin/models/{}/{}/annotations/dry-run","POST /api/admin/models/{}/{}/annotations/apply","POST /api/admin/designs/{}/{}/annotations/dry-run","POST /api/admin/designs/{}/{}/annotations/apply","GET /api/admin/cleanup/findings","GET /api/admin/cleanup/element","POST /api/admin/cleanup/fixes/plan","GET /api/me/signup-packs","POST /api/me/signup-packs","GET /api/admin/forms/{}/embed","PUT /api/admin/forms/{}/embed","GET /api/admin/metrics","GET /api/admin/records.csv","GET /api/admin/records/assignees","GET /api/admin/record-views","POST /api/admin/record-views","DELETE /api/admin/record-views/{}","GET /api/admin/retention-policies","PUT /api/admin/retention-policies/{}","DELETE /api/admin/retention-policies/{}","POST /api/admin/exports","GET /api/admin/exports/{}","GET /api/admin/exports/{}/download","GET /api/admin/ceremonies/{}/summary","GET /api/admin/activity.csv","GET /api/org/action-catalogue","POST /api/org/action-catalogue/{}/install","DELETE /api/org/action-catalogue/{}","GET /api/me/notification-preferences","PUT /api/me/notification-preferences","POST /api/agent/plans","GET /api/agent/metrics","GET /api/agent/record-export","GET /api/agent/record-assignees","GET /api/agent/record-views","POST /api/agent/record-views","DELETE /api/agent/record-views/{}","PATCH /api/agent/records/{}/metadata","GET /api/agent/retention-policies","PUT /api/agent/retention-policies/{}","DELETE /api/agent/retention-policies/{}","POST /api/agent/exports","GET /api/agent/exports/{}","GET /api/agent/exports/{}/download","GET /api/agent/activity-export","GET /api/agent/actions","POST /api/agent/actions/{}/install","DELETE /api/agent/actions/{}","GET /api/agent/notification-preferences","PUT /api/agent/notification-preferences","GET /api/agent/packs","POST /api/agent/packs/install","GET /api/agent/forms/{}/embed","PUT /api/agent/forms/{}/embed","GET /api/agent/ceremonies/{}/summary"]},{"scope":"salesforce:receipts:read","admitted_routes":["GET /api/salesforce/test-fill-receipt"]},{"scope":"agent:records:read","admitted_routes":["GET /api/records/{}/fill-links","GET /api/admin/forms/{}/fill-links","GET /api/admin/studio","GET /api/admin/content-index","GET /api/admin/records","GET /api/documents/{}/check-findings"]},{"scope":"agent:records:write","admitted_routes":["DELETE /api/records/{}","DELETE /api/records/{}/fill-links/{}","POST /api/records/{}/generate-from-design","POST /api/records/{}/actions/{}","POST /api/records/{}/drive-folder/rename","POST /api/records/{}/reviews","DELETE /api/documents/{}","PUT /api/documents/{}","PUT /api/documents/{}/content","POST /api/documents/{}/pdf","POST /api/documents/{}/discard-missing-frozen-pdf","POST /api/documents/{}/upload-to-drive","POST /api/documents/bulk-upload-to-drive","POST /api/documents/{}/verify-drive","POST /api/documents/{}/upload-to-aws","PUT /api/reviews/{}","POST /api/reviews/{}/comments","PUT /api/comments/{}/resolve","DELETE /api/admin/forms/{}/fill-links/{}","POST /api/admin/records/bulk-delete"]},{"scope":"agent:developer:read","admitted_routes":["GET /api/agent/proposals","GET /api/admin/activity","GET /api/org","GET /api/org/secrets","GET /api/org/storage-credentials","GET /api/org/ai","GET /api/org/ai/usage","GET /api/org/webhooks/{}/secret"]},{"scope":"agent:developer:write","admitted_routes":["POST /api/agent/proposals","POST /api/ai/chat","PUT /api/org","DELETE /api/org/secrets","POST /api/org/storage-credentials/test","POST /api/org/ai/test","POST /api/org/api-keys/proposals","POST /api/org/webhooks/{}/secret/rotate","POST /api/org/webhooks/{}/secret/retire"]},{"scope":"agent:people:read","admitted_routes":["GET /api/billing/status","GET /api/admin/personas","GET /api/admin/approvals"]},{"scope":"agent:people:write","admitted_routes":["POST /api/admin/personas","PUT /api/admin/personas/{}","DELETE /api/admin/personas/{}"]},{"scope":"agent:signing:read","admitted_routes":["GET /api/admin/ceremonies/{}/evidence-pack"]},{"scope":"agent:signing:write","admitted_routes":["POST /api/records/{}/ceremonies","POST /api/admin/signing/ceremonies/{}/outbox/{}/recover","POST /api/admin/signing/ceremonies/{}/commitment-operations/{}/recover","POST /api/admin/signing/ceremonies/{}/parties/{}/invitation/reissue","POST /api/admin/ceremonies/{}/activate","POST /api/admin/ceremonies/{}/revoke","POST /api/admin/ceremonies/{}/remind","POST /api/admin/signing/ceremonies/{}/commitments/{}/disclosure-bundle"]}]},"rails":{"agent":{"description":"The self-authenticating agent rail. An org-bound API key (X-API-Key or Bearer) is the only accepted credential; a session cookie is refused 403 SESSION_NOT_ALLOWED even when one rides along. A SCOPED key needs signing:agent for EVERY path under this prefix — the rail checks that itself, before the shared scoped-key middleware runs. NULL-scope (grandfathered) keys are unrestricted.","path_prefix":"/api/agent/","dormant_flag":"SIGNING_AGENT_COMMIT_ENABLED","self_authenticating":true,"session_rejected":true,"required_scope":"signing:agent"},"agent_protocols":{"description":"The MCP and A2A protocol adapters. They authenticate through the self-authenticating agent rail before exposing a tool or task, create a fresh internal request with only the presented API credential and bounded network metadata, and can invoke only the curated agent capabilities.","path_prefix":"/mcp and /a2a","dormant_flag":"SIGNING_AGENT_COMMIT_ENABLED","self_authenticating":true,"session_rejected":true,"required_scope":"signing:agent"},"agent_discovery":{"description":"Credential-free discovery: this manifest and the Quill Agent Skill. No kill-switch — an agent must always be able to learn what it is allowed to do.","path_prefix":"/.well-known/quill-agent","dormant_flag":null,"self_authenticating":false,"session_rejected":false,"required_scope":null},"public_signing":{"description":"The isolated public signer rail (capability exchanged for a signer session cookie).","path_prefix":"/api/signing/","dormant_flag":"SIGNING_PUBLIC_READ_ENABLED","self_authenticating":false,"session_rejected":false,"required_scope":null},"public_verify":{"description":"Credential-free public verification and the transparency log. Hashes and proofs only, never fact content.","path_prefix":"/api/verify/","dormant_flag":"SIGNING_PUBLIC_VERIFY_ENABLED","self_authenticating":false,"session_rejected":false,"required_scope":null},"public_fill_links":{"description":"The isolated anonymous filler rail (fragment capability exchanged for a fill session cookie).","path_prefix":"/api/fill-links/","dormant_flag":"FILL_LINK_PUBLIC_READ_ENABLED","self_authenticating":false,"session_rejected":false,"required_scope":null}},"routes":[{"method":"POST","path":"/api/agent/proposals","rail":"agent","tag":"Agent Rail","summary":"Seal this key's pending capability proposal","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/agent/proposals","rail":"agent","tag":"Agent Rail","summary":"List this key's own capability proposals","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"POST","path":"/api/agent/dispatch","rail":"agent","tag":"Agent Rail","summary":"Rehearse or execute a catalogued capability","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/agent/library","rail":"agent","tag":"Agent Rail","summary":"Search capability procedures","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/library/{}","rail":"agent","tag":"Agent Rail","summary":"Read a capability procedure","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/health","rail":"public","tag":"Health","summary":"Liveness probe","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/embedded/sessions","rail":"data","tag":"Embedded Sessions","summary":"Mint a one-use embedded session grant","credential_free":false,"scope_required":"embedded:sessions:mint","scope_variants":[]},{"method":"POST","path":"/api/embedded/session-grants/exchange","rail":"public","tag":"Embedded Sessions","summary":"Atomically exchange a one-use embedded grant","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/embedded/records/{}/generate-context","rail":"data","tag":"Embedded Sessions","summary":"Read the bound record's generation projection","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/embedded/records/{}/review-context","rail":"data","tag":"Embedded Sessions","summary":"Read the bound record's review context","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/embedded/hosts","rail":"admin","tag":"Embedded Sessions","summary":"List active embedded hosts","credential_free":false,"scope_required":"agent:integrations:read","scope_variants":[]},{"method":"DELETE","path":"/api/admin/embedded/hosts/{}","rail":"admin","tag":"Embedded Sessions","summary":"Revoke an embedded host and all credentials","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"PATCH","path":"/api/admin/embedded/hosts/{}","rail":"admin","tag":"Embedded Sessions","summary":"Set a host's identity mode","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"DELETE","path":"/api/admin/embedded/sessions/{}","rail":"admin","tag":"Embedded Sessions","summary":"Revoke one embedded session","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"GET","path":"/api/embedded/identity-links/lookup","rail":"data","tag":"Embedded Identity Links","summary":"Look up the current host identity-link state","credential_free":false,"scope_required":"embedded:identity-links:request","scope_variants":[]},{"method":"POST","path":"/api/embedded/identity-link-requests","rail":"data","tag":"Embedded Sessions","summary":"Open a one-use identity link request for a host subject","credential_free":false,"scope_required":"embedded:identity-links:request","scope_variants":[]},{"method":"GET","path":"/api/embedded/identity-link-requests/{}","rail":"data","tag":"Embedded Sessions","summary":"Poll one identity link request","credential_free":false,"scope_required":"embedded:identity-links:request","scope_variants":[]},{"method":"POST","path":"/api/embedded/identity-link-requests/inspect","rail":"data","tag":"Embedded Sessions","summary":"Describe a link request to the signed-in person","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/embedded/identity-link-requests/{}/confirm","rail":"data","tag":"Embedded Sessions","summary":"Confirm a link request as the signed-in person","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/embedded/identity-links","rail":"admin","tag":"Embedded Sessions","summary":"List identity links on this organization's hosts","credential_free":false,"scope_required":"agent:integrations:read","scope_variants":[]},{"method":"DELETE","path":"/api/admin/embedded/identity-links/{}","rail":"admin","tag":"Embedded Sessions","summary":"Revoke an identity link","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"POST","path":"/api/fill-links/session/exchange","rail":"public","tag":"Public Fill Links","summary":"Exchange a fill-link capability for a short-lived session","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/fill-links/session","rail":"data","tag":"Public Fill Links","summary":"Read and refresh the current fill-link session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/fill-links/otp/send","rail":"data","tag":"Public Fill Links","summary":"Send a fill verification code","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/fill-links/otp/verify","rail":"data","tag":"Public Fill Links","summary":"Verify a fill verification code","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/fill-links/schema","rail":"data","tag":"Public Fill Links","summary":"Read the linked record's public runtime schema","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/fill-links/beacon/section","rail":"data","tag":"Public Fill Links","summary":"Record that the current fill session reached a form section","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/fill-links/record","rail":"data","tag":"Public Fill Links","summary":"Read the linked record","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/fill-links/record","rail":"data","tag":"Public Fill Links","summary":"Save answers on the linked record","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/fill-links/preview-designs","rail":"data","tag":"Public Fill Links","summary":"List preview designs allowed by the fill link","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/fill-links/preview-designs/{}","rail":"data","tag":"Public Fill Links","summary":"Read one preview design allowed by the fill link","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/session/exchange","rail":"public","tag":"Public Signing","summary":"Exchange or resume a signer invitation capability","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/signing/session","rail":"data","tag":"Public Signing","summary":"Read the active signer session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/session/refresh","rail":"data","tag":"Public Signing","summary":"Extend a present signer's session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/assurance/email/send","rail":"data","tag":"Public Signing","summary":"Create or replay a durable email OTP delivery","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/assurance/email/verify","rail":"data","tag":"Public Signing","summary":"Verify email control and rotate the signer session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/assurance/sms/send","rail":"data","tag":"Public Signing","summary":"Create or replay a durable SMS OTP delivery","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/assurance/sms/verify","rail":"data","tag":"Public Signing","summary":"Verify SMS channel control and rotate the signer session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/decline","rail":"data","tag":"Public Signing","summary":"Decline the ceremony as a routed party","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/events","rail":"data","tag":"Public Signing","summary":"Append one authoritative guided-review event","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/signing/commit","rail":"data","tag":"Public Signing","summary":"Reconcile the current commitment operation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/signing/commit","rail":"data","tag":"Public Signing","summary":"Stage an idempotent SES commitment","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/signing/documents/{}","rail":"data","tag":"Public Signing","summary":"Fetch one exact frozen PDF","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/signing/artifacts/{}","rail":"data","tag":"Public Signing","summary":"Download one hash-verified signer-visible PDF artifact","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/quill-seal-jwks.json","rail":"public","tag":"Public Verification","summary":"Publish historical Quill platform-seal verification keys","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"HEAD","path":"/.well-known/quill-seal-jwks.json","rail":"public","tag":"Public Verification","summary":"Check availability of the public seal JWKS","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/quill-agent-manifest","rail":"public","tag":"Agent Discovery","summary":"Publish the machine-readable Quill agent capability manifest","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/quill-agent-skill","rail":"public","tag":"Agent Discovery","summary":"Publish the Quill Agent Skill (orientation for an external agent)","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/agent-card.json","rail":"public","tag":"Agent Discovery","summary":"Publish the primary A2A Agent Card","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/agent.json","rail":"public","tag":"Agent Discovery","summary":"Publish the recommended A2A Agent Card alias","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/oauth-protected-resource","rail":"public","tag":"Agent Protocols","summary":"Describe the MCP endpoint as an OAuth protected resource","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/oauth-protected-resource/mcp","rail":"public","tag":"Agent Protocols","summary":"Describe the MCP endpoint at its path-suffixed well-known address","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/.well-known/oauth-authorization-server","rail":"public","tag":"Agent Protocols","summary":"Describe Quill's OAuth authorization server","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/oauth/register","rail":"public","tag":"Agent Protocols","summary":"Register a public OAuth client for the MCP endpoint","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/oauth/authorize","rail":"public","tag":"Agent Protocols","summary":"Start browser sign-in for an MCP host","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/oauth/token","rail":"public","tag":"Agent Protocols","summary":"Redeem an authorization code or rotate a refresh token","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/oauth/revoke","rail":"public","tag":"Agent Protocols","summary":"Revoke an access or refresh token","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/oauth/requests/{}","rail":"data","tag":"Agent Protocols","summary":"Read a pending MCP sign-in request for the consent page","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/oauth/requests/{}/decision","rail":"data","tag":"Agent Protocols","summary":"Allow or cancel a pending MCP sign-in request","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/mcp","rail":"agent_protocols","tag":"Agent Protocols","summary":"Reject stateful MCP session negotiation","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/mcp","rail":"agent_protocols","tag":"Agent Protocols","summary":"Invoke a curated stateless MCP tool","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/a2a","rail":"agent_protocols","tag":"Agent Protocols","summary":"Read a frozen ceremony as a constrained A2A task","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/verify/{}","rail":"public","tag":"Public Verification","summary":"Resolve a sealed verification reference to the public proof view","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/verify/artifact","rail":"public","tag":"Public Verification","summary":"Look up a document hash against sealed frozen and combined PDFs","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/verify/frozen-document","rail":"public","tag":"Public Verification","summary":"Verify any production frozen document by exact byte hash","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/records/{}/ceremonies","rail":"data","tag":"Signing Administration","summary":"Create a single-signer SES ceremony draft","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"GET","path":"/api/verify/log/tree-head","rail":"public","tag":"Public Verification","summary":"Latest (or a specific) signed transparency-log tree head","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/verify/log/consistency","rail":"public","tag":"Public Verification","summary":"RFC 6962 consistency proof between two tree sizes","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/verify/log/inclusion","rail":"public","tag":"Public Verification","summary":"Inclusion proof for one transparency-log entry","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/verify/mandate-status/{}","rail":"public","tag":"Public Verification","summary":"W3C Bitstring Status List for mandate credentials","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/redactions","rail":"admin","tag":"Signing Administration","summary":"Stage a commitment-leaf redaction — returns the exact tombstone manifest to echo","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/redactions/{}/confirm","rail":"admin","tag":"Signing Administration","summary":"Confirm a staged redaction by echoing its token and manifest hash","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/ceremonies","rail":"admin","tag":"Signing Administration","summary":"List PII-safe signing ceremonies","credential_free":false,"scope_required":"signing:read","scope_variants":[]},{"method":"GET","path":"/api/admin/ceremonies/{}","rail":"admin","tag":"Signing Administration","summary":"Read one PII-safe signing ceremony dossier","credential_free":false,"scope_required":"signing:read","scope_variants":[]},{"method":"GET","path":"/api/admin/agent-control","rail":"admin","tag":"Signing Administration","summary":"Read the organization agent emergency stop and circuit state","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/admin/agent-control","rail":"admin","tag":"Signing Administration","summary":"Set the organization agent emergency stop and circuit policy","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/mandates","rail":"admin","tag":"Signing Administration","summary":"List agent mandates (Wave 8)","credential_free":false,"scope_required":"signing:read","scope_variants":[]},{"method":"POST","path":"/api/admin/mandates","rail":"admin","tag":"Signing Administration","summary":"Create an agent mandate (Wave 8)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/mandates/audit","rail":"admin","tag":"Signing Administration","summary":"Prove the bounded autonomous blast radius of a proposed mandate (R6)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/agent/sandbox","rail":"public","tag":"Agent Interface","summary":"Mint a disposable, self-identifying sandbox organization (R7)","credential_free":true,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/conformance","rail":"agent","tag":"Agent Interface","summary":"Record a signed sandbox conformance pass for an agent identity","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/identity/bind","rail":"agent","tag":"Agent Interface","summary":"Bind a production API key to a proven durable agent identity","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/mandates/{}/delegations","rail":"admin","tag":"Signing Administration","summary":"Mint a provably narrower delegated child mandate (P8)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/mandates/{}/credential","rail":"admin","tag":"Signing Administration","summary":"Export a mandate version as a signed W3C VC 2.0 credential","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/mandates/{}","rail":"admin","tag":"Signing Administration","summary":"Read one agent mandate (Wave 8)","credential_free":false,"scope_required":"signing:read","scope_variants":[]},{"method":"PUT","path":"/api/admin/mandates/{}","rail":"admin","tag":"Signing Administration","summary":"Update an agent mandate → version+1 (Wave 8)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/admin/mandates/{}","rail":"admin","tag":"Signing Administration","summary":"Revoke an agent mandate (never deletes; Wave 8)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/agent/cleanup/findings","rail":"agent","tag":"Agent","summary":"Inspect workspace Cleanup findings without writing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/cleanup/plan","rail":"agent","tag":"Agent","summary":"Plan Cleanup annotations without writing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/cleanup/why","rail":"agent","tag":"Agent","summary":"Explain one Cleanup element without writing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/catalogue","rail":"agent","tag":"Agent Rail","summary":"List every capability by id","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/whoami","rail":"agent","tag":"Agent Rail","summary":"The authority this API key actually holds","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/constraints","rail":"agent","tag":"Agent Rail","summary":"The self-describing field/validator/identifier constraint surface","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/provenance","rail":"agent","tag":"Agent Rail","summary":"Hash-in / tree-out provenance oracle over this org's content hashes","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/agents-md","rail":"agent","tag":"Agent Rail","summary":"Per-org AGENTS.md orientation descriptor (markdown)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/dry-run","rail":"agent","tag":"Agent Rail","summary":"Run an exact write-path evaluator without writing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/visibility/simulate","rail":"agent","tag":"Agent Rail","summary":"Simulate persona visibility and counterfactual differences","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/interview/plan","rail":"agent","tag":"Agent Rail","summary":"Prove a bounded minimal interview plan","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/render/preview","rail":"agent","tag":"Agent Rail","summary":"Render an exact Markdown preview and render quote","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/documents/{}/verify-bytes","rail":"agent","tag":"Agent Rail","summary":"Verify candidate bytes against an owned frozen PDF","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/attestations/sheet","rail":"agent","tag":"Agent Rail","summary":"Render the exact ses-attest-v1 data sheet without signing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/records/{}","rail":"agent","tag":"Agent Rail","summary":"Read a hash-covered, redacted record review envelope","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/records/{}/intake","rail":"agent","tag":"Agent Rail","summary":"Answer the current continuous-intake question under one mandate","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/records/{}/history","rail":"agent","tag":"Agent Rail","summary":"Read redacted record-answer time travel from immutable provenance","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/events","rail":"agent","tag":"Agent Rail","summary":"Org-scoped lifecycle event feed with cursor-relative reads","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/events/ack","rail":"agent","tag":"Agent Rail","summary":"Advance a named consumer cursor (monotonic, idempotent)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/leases/acquire","rail":"agent","tag":"Agent Rail","summary":"Acquire (or re-acquire) an expiring mandate-scoped work lease","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/leases/renew","rail":"agent","tag":"Agent Rail","summary":"Renew a held lease (version-fenced)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/leases/release","rail":"agent","tag":"Agent Rail","summary":"Release a held lease (version-fenced)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/ceremonies/{}","rail":"agent","tag":"Signing Agent","summary":"Machine review envelope (Wave 8 agent rail)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/ceremonies/{}/documents/{}/pdf","rail":"agent","tag":"Signing Agent","summary":"Download one hash-verified frozen ceremony PDF","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/ceremonies/{}/dry-run","rail":"agent","tag":"Signing Agent","summary":"Evaluate an agent ceremony without committing","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/ceremonies/{}/commit","rail":"agent","tag":"Signing Agent","summary":"Agent commit status (Wave 8)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/ceremonies/{}/commit","rail":"agent","tag":"Signing Agent","summary":"Idempotent agent commit (Wave 8)","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/signing/ceremonies/{}/outbox/{}/recover","rail":"admin","tag":"Signing Administration","summary":"Recover one terminal failed post-commit operation","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/admin/signing/ceremonies/{}/commitment-operations/{}/recover","rail":"admin","tag":"Signing Administration","summary":"Recover exhausted SES evidence processing","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/admin/signing/ceremonies/{}/parties/{}/invitation/reissue","rail":"admin","tag":"Signing Administration","summary":"Replace one eligible Wave 1 signer invitation","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/me/demo-ceremony/{}/cancel","rail":"data","tag":"Signing Administration","summary":"Cancel your own demo ceremony","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/demo-ceremony/{}/reissue","rail":"data","tag":"Signing Administration","summary":"Resend your own demo ceremony's invitation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/signing/email-suppression","rail":"admin","tag":"Signing Administration","summary":"Pre-flight suppression check for one email address","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/webhooks/email/signing","rail":"public","tag":"Signing Administration","summary":"Ingest a Resend delivery event for the signing team","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/webhooks/email/lifecycle","rail":"public","tag":"Learning","summary":"Ingest a Resend delivery event for the lifecycle team","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/ceremonies/{}/evidence-pack","rail":"admin","tag":"Signing Administration","summary":"Export the completed ceremony evidence pack","credential_free":false,"scope_required":"agent:signing:read","scope_variants":[]},{"method":"POST","path":"/api/admin/ceremonies/{}/activate","rail":"admin","tag":"Signing Administration","summary":"Activate a draft and issue its invitation","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/admin/ceremonies/{}/revoke","rail":"admin","tag":"Signing Administration","summary":"Revoke an active ses-multi-v1 ceremony","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/admin/ceremonies/{}/remind","rail":"admin","tag":"Signing Administration","summary":"Send a manual reminder to the current ses-multi-v1 group","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/admin/signing/ceremonies/{}/parties/{}/handoff-link","rail":"admin","tag":"Signing Administration","summary":"Mint a single-use in-person handoff link","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/signing/ceremonies/{}/commitments/{}/disclosure-bundle","rail":"admin","tag":"Signing Administration","summary":"Mint a selective-disclosure bundle for a committed commitment","credential_free":false,"scope_required":"agent:signing:write","scope_variants":[]},{"method":"POST","path":"/api/auth/login","rail":"public","tag":"Authentication","summary":"Log in","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/mfa/verify","rail":"public","tag":"Authentication","summary":"Complete password login with TOTP or a recovery code","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/logout","rail":"public","tag":"Authentication","summary":"Log out","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/me","rail":"public","tag":"Authentication","summary":"Current session","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/passkey/register-options","rail":"data","tag":"Authentication","summary":"Start a passkey registration ceremony","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/passkey/register","rail":"data","tag":"Authentication","summary":"Finish a passkey registration ceremony","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/passkey/login-options","rail":"public","tag":"Authentication","summary":"Start a passkey authentication ceremony","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/passkey/login","rail":"public","tag":"Authentication","summary":"Finish a passkey authentication ceremony","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/passkeys","rail":"data","tag":"Authentication","summary":"List the signed-in identity's passkeys","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/auth/passkeys/{}","rail":"data","tag":"Authentication","summary":"Rename one passkey","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/auth/passkeys/{}","rail":"data","tag":"Authentication","summary":"Revoke one passkey","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/account/identity-links","rail":"data","tag":"Authentication","summary":"List the signed-in identity's own embedded identity links","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/auth/account/identity-links/{}","rail":"data","tag":"Authentication","summary":"Unlink one of the signed-in identity's own links","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/memberships","rail":"data","tag":"Authentication","summary":"List the signed-in identity's organization memberships","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/active-org","rail":"data","tag":"Authentication","summary":"Switch the signed-in identity's active organization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/auth/account/name","rail":"data","tag":"Authentication","summary":"Update your display name","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/auth/account/avatar","rail":"data","tag":"Authentication","summary":"Update your preset avatar","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/password","rail":"data","tag":"Authentication","summary":"Change your password","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/email","rail":"data","tag":"Authentication","summary":"Request a verified login-email change","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/email/verify","rail":"data","tag":"Authentication","summary":"Verify and apply a login-email change","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/account/totp","rail":"data","tag":"Authentication","summary":"Read authenticator status","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/totp/enroll","rail":"data","tag":"Authentication","summary":"Start or resume authenticator enrollment","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/totp/confirm","rail":"data","tag":"Authentication","summary":"Confirm authenticator enrollment","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/totp/recovery-codes","rail":"data","tag":"Authentication","summary":"Replace authenticator recovery codes","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/totp/disable","rail":"data","tag":"Authentication","summary":"Disable authenticator MFA","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/reauth/password","rail":"data","tag":"Authentication","summary":"Confirm identity with the account password","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/reauth/totp","rail":"data","tag":"Authentication","summary":"Confirm identity with an authenticator code","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/reauth/passkey/options","rail":"data","tag":"Authentication","summary":"Start a passkey identity confirmation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/account/reauth/passkey/verify","rail":"data","tag":"Authentication","summary":"Finish a passkey identity confirmation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/invite/preview","rail":"public","tag":"Authentication","summary":"Preview an invitation","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/accept-invite","rail":"public","tag":"Authentication","summary":"Accept an invitation","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/forgot","rail":"public","tag":"Authentication","summary":"Request a password reset","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/reset","rail":"public","tag":"Authentication","summary":"Complete a password reset","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/schemas","rail":"data","tag":"Schemas (runtime)","summary":"List published schemas","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"GET","path":"/api/schemas/{}/draft","rail":"data","tag":"Schemas (runtime)","summary":"Get a model's draft (model + form) for preview","credential_free":false,"scope_required":"schemas:read","scope_variants":[]},{"method":"GET","path":"/api/schemas/{}/published","rail":"data","tag":"Schemas (runtime)","summary":"Get a model's published (model + form) for the renderer","credential_free":false,"scope_required":"schemas:read","scope_variants":[]},{"method":"GET","path":"/api/schemas/{}/prefill-targets","rail":"data","tag":"Schemas (runtime)","summary":"List the targets a connector may prefill on a model","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"GET","path":"/api/models/{}/forms","rail":"data","tag":"Schemas (runtime)","summary":"List forms on a model (form picker)","credential_free":false,"scope_required":"schemas:read","scope_variants":[]},{"method":"GET","path":"/api/forms/{}/published","rail":"data","tag":"Schemas (runtime)","summary":"Get a published form + its linked model (form-centric)","credential_free":false,"scope_required":"schemas:read","scope_variants":[]},{"method":"GET","path":"/api/records","rail":"data","tag":"Records","summary":"List live records linked to an external record","credential_free":false,"scope_required":null,"scope_variants":[{"when":"?salesforce_record_id=<id>","scope_required":"records:read"}]},{"method":"POST","path":"/api/records","rail":"data","tag":"Records","summary":"Create a record","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"POST","path":"/api/records/copy-preview","rail":"data","tag":"Records","summary":"Preview a connector copy offer before creating a record","credential_free":false,"scope_required":"records:read","scope_variants":[]},{"method":"GET","path":"/api/records/{}/copy-offer","rail":"data","tag":"Records","summary":"Preview a copy into a new record","credential_free":false,"scope_required":"records:read","scope_variants":[]},{"method":"GET","path":"/api/records/{}/copy","rail":"data","tag":"Records","summary":"Read copy state and any pending offer","credential_free":false,"scope_required":"records:read","scope_variants":[]},{"method":"POST","path":"/api/records/{}/copy","rail":"data","tag":"Records","summary":"Apply or skip a pending copy","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"PUT","path":"/api/records/{}/copy/review","rail":"data","tag":"Records","summary":"Confirm copied answers are still right","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"GET","path":"/api/records/{}","rail":"data","tag":"Records","summary":"Get a record","credential_free":false,"scope_required":"records:read","scope_variants":[{"when":"?recompute=1","scope_required":"records:write"}]},{"method":"PUT","path":"/api/records/{}","rail":"data","tag":"Records","summary":"Update a record's data","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"DELETE","path":"/api/records/{}","rail":"data","tag":"Records","summary":"Soft-delete a record","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/records/{}/form-version","rail":"data","tag":"Records","summary":"Move a record to its form's published version","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"POST","path":"/api/records/{}/model-version","rail":"data","tag":"Records","summary":"Move a record to the newer model version its form is built on","credential_free":false,"scope_required":"records:write","scope_variants":[]},{"method":"GET","path":"/api/records/{}/preview-designs","rail":"data","tag":"Live Preview","summary":"List published designs available to preview for a record","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/records/{}/preview-designs/{}","rail":"data","tag":"Live Preview","summary":"Read a published preview design and its pinned model","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/records/{}/fill-links","rail":"data","tag":"Fill Links","summary":"List fill links for a record","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"POST","path":"/api/records/{}/fill-links","rail":"data","tag":"Fill Links","summary":"Create a fill link for a record","credential_free":false,"scope_required":"fill-links:mint","scope_variants":[]},{"method":"DELETE","path":"/api/records/{}/fill-links/{}","rail":"data","tag":"Fill Links","summary":"Revoke a record fill link","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/records/{}/generate-from-design","rail":"data","tag":"Records","summary":"Generate one or more documents from a template design","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/records/{}/actions/{}","rail":"data","tag":"Records","summary":"Run a custom action (outbound-http, cvr-lookup, cpr-lookup, sms-verify, or delegate)","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/records/{}/documents","rail":"data","tag":"Documents","summary":"List a record's documents","credential_free":false,"scope_required":"documents:read","scope_variants":[]},{"method":"POST","path":"/api/records/{}/documents/pdfs","rail":"data","tag":"Documents","summary":"Queue PDF renders for a run of documents","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/records/{}/upload","rail":"data","tag":"Documents","summary":"Upload a document to a record","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/records/{}/drive-folder/rename","rail":"data","tag":"Documents","summary":"Rename a record's Google Drive folder","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/records/{}/reviews","rail":"data","tag":"Reviews","summary":"Create a review on a record","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/records/{}/reviews","rail":"data","tag":"Reviews","summary":"List a record's reviews","credential_free":false,"scope_required":"reviews:read","scope_variants":[]},{"method":"POST","path":"/api/admin/documents/{}/revoke","rail":"admin","tag":"Documents","summary":"Irreversibly revoke a document","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/documents/{}/supersede","rail":"admin","tag":"Documents","summary":"Record the document that supersedes this document","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/documents/{}","rail":"data","tag":"Documents","summary":"Download a document","credential_free":false,"scope_required":"documents:read","scope_variants":[]},{"method":"DELETE","path":"/api/documents/{}","rail":"data","tag":"Documents","summary":"Move one document to admin trash","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"PUT","path":"/api/documents/{}","rail":"data","tag":"Documents","summary":"Update a document's status","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/documents/{}/content","rail":"data","tag":"Documents","summary":"Get a document's editable content","credential_free":false,"scope_required":"documents:read","scope_variants":[]},{"method":"PUT","path":"/api/documents/{}/content","rail":"data","tag":"Documents","summary":"Save an edited document as a new revision","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/documents/{}/pdf","rail":"data","tag":"Documents","summary":"Download a rendered document PDF","credential_free":false,"scope_required":"documents:read","scope_variants":[]},{"method":"POST","path":"/api/documents/{}/pdf","rail":"data","tag":"Documents","summary":"Render a document to PDF","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/documents/{}/pdf/async","rail":"data","tag":"Documents","summary":"Queue a PDF render","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/documents/{}/discard-missing-frozen-pdf","rail":"data","tag":"Documents","summary":"Discard a missing frozen PDF pointer","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/documents/{}/upload-to-drive","rail":"data","tag":"Documents","summary":"Upload a document's PDF to the record's Google Drive folder","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/documents/bulk-upload-to-drive","rail":"data","tag":"Documents","summary":"Upload several documents to Drive","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/documents/{}/verify-drive","rail":"data","tag":"Documents","summary":"Re-check that a document's Drive file is still there","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/documents/{}/upload-to-aws","rail":"data","tag":"Documents","summary":"Render to PDF and upload to S3","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/reviews/{}","rail":"data","tag":"Reviews","summary":"Get a review (with comments)","credential_free":false,"scope_required":"reviews:read","scope_variants":[]},{"method":"PUT","path":"/api/reviews/{}","rail":"data","tag":"Reviews","summary":"Update a review","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"POST","path":"/api/reviews/{}/comments","rail":"data","tag":"Reviews","summary":"Add a comment to a review","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"PUT","path":"/api/comments/{}/resolve","rail":"data","tag":"Reviews","summary":"Resolve a comment","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/admin/designs","rail":"admin","tag":"Template Designs","summary":"List template designs","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/designs","rail":"admin","tag":"Template Designs","summary":"Create a template design","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}","rail":"admin","tag":"Template Designs","summary":"Get the current version of a design","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/versions","rail":"admin","tag":"Template Designs","summary":"List a design's versions","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/versions","rail":"admin","tag":"Template Designs","summary":"Create a new draft version of a design","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/{}","rail":"admin","tag":"Template Designs","summary":"Get a specific design version","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"PUT","path":"/api/admin/designs/{}/{}","rail":"admin","tag":"Template Designs","summary":"Update a draft design version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"DELETE","path":"/api/admin/designs/{}/{}","rail":"admin","tag":"Template Designs","summary":"Soft-delete a design version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/{}/revert","rail":"admin","tag":"Template Designs","summary":"Revert to an archived design version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/models","rail":"admin","tag":"Admin · Models","summary":"List models","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/models/{}/versions","rail":"admin","tag":"Admin · Models","summary":"List a model's versions","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/versions","rail":"admin","tag":"Admin · Models","summary":"Create a new model version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/models/{}/meta","rail":"admin","tag":"Admin · Models","summary":"Get family-level model metadata","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"PUT","path":"/api/admin/models/{}/meta","rail":"admin","tag":"Admin · Models","summary":"Set family-level model metadata","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/admin/models/{}","rail":"admin","tag":"Admin · Models","summary":"Soft-delete every live version of a model family","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/models/{}/{}","rail":"admin","tag":"Admin · Models","summary":"Get a model version (composed)","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"PUT","path":"/api/admin/models/{}/{}","rail":"admin","tag":"Admin · Models","summary":"Update a draft model version","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/admin/models/{}/{}","rail":"admin","tag":"Admin · Models","summary":"Soft-delete a model version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/models/{}/{}/usage","rail":"admin","tag":"Admin · Models","summary":"Get a model version's dependents","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/{}/revert","rail":"admin","tag":"Admin · Models","summary":"Revert to an archived model version","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/fill-links","rail":"admin","tag":"Fill Links","summary":"List reusable blank-fill links for a form","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/fill-links","rail":"admin","tag":"Fill Links","summary":"Create a reusable blank-fill link for a published or draft form","credential_free":false,"scope_required":"fill-links:mint-form","scope_variants":[]},{"method":"DELETE","path":"/api/admin/forms/{}/fill-links/{}","rail":"admin","tag":"Fill Links","summary":"Revoke a reusable form fill link","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/versions","rail":"admin","tag":"Admin · Forms","summary":"List a form's versions","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/versions","rail":"admin","tag":"Admin · Forms","summary":"Create a new form version","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/{}","rail":"admin","tag":"Admin · Forms","summary":"Get a form version","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"PUT","path":"/api/admin/forms/{}/{}","rail":"admin","tag":"Admin · Forms","summary":"Update a form version","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"DELETE","path":"/api/admin/forms/{}/{}","rail":"admin","tag":"Admin · Forms","summary":"Soft-delete a form version","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/{}/revert","rail":"admin","tag":"Admin · Forms","summary":"Revert to an archived form version","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"GET","path":"/api/admin/studio","rail":"admin","tag":"Admin · Records","summary":"Studio overview","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"GET","path":"/api/admin/content-index","rail":"admin","tag":"Admin · Records","summary":"Search authored Studio content","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"POST","path":"/api/admin/imports","rail":"admin","tag":"Admin · Import","summary":"Upload a Word template and create an import job","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/imports","rail":"admin","tag":"Admin · Import","summary":"List import jobs","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/imports/{}","rail":"admin","tag":"Admin · Import","summary":"Import job detail","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"DELETE","path":"/api/admin/imports/{}","rail":"admin","tag":"Admin · Import","summary":"Soft-delete an import job","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"GET","path":"/api/admin/imports/{}/cleanup","rail":"admin","tag":"Admin · Import","summary":"List Cleanup findings for an import's finalized draft trio","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/drafts","rail":"admin","tag":"Admin · Import","summary":"Create deterministic drafts from the import (Wave 1)","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"GET","path":"/api/admin/imports/{}/media/{}","rail":"admin","tag":"Admin · Import","summary":"An extracted media part (image bytes)","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/infer","rail":"admin","tag":"Admin · Import","summary":"Start AI inference (Stages C+D) for the import","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/answers","rail":"admin","tag":"Admin · Import","summary":"Submit question answers and element review actions","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/decisions","rail":"admin","tag":"Admin · Import","summary":"Record disposition decisions (the importGate law, visual)","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/finalize","rail":"admin","tag":"Admin · Import","summary":"Finalize the import into its draft model, form and template (saved-plan rule)","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/imports/{}/fidelity","rail":"admin","tag":"Admin · Import","summary":"Run the fidelity check (v1 slice)","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"GET","path":"/api/admin/imports/{}/ir","rail":"admin","tag":"Admin · Import","summary":"The job's anchored IR","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/migration/overview","rail":"admin","tag":"Admin · Migration","summary":"Org-wide migration overview","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/families/{}/changes","rail":"admin","tag":"Admin · Releases","summary":"Family workspace changes (unpublished drafts)","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/families/{}/releases","rail":"admin","tag":"Admin · Releases","summary":"Family release history","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/families/{}/publish/plan","rail":"admin","tag":"Admin · Releases","summary":"Compute a family publish plan (review payload)","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/families/{}/publish/execute","rail":"admin","tag":"Admin · Releases","summary":"Publish the family (the one Publish)","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/fork-draft","rail":"admin","tag":"Admin · Releases","summary":"Adopt-or-create a model draft","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/discard-draft","rail":"admin","tag":"Admin · Releases","summary":"Discard a model draft","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/discard-draft","rail":"admin","tag":"Admin · Releases","summary":"Discard a template design draft","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/fork-draft","rail":"admin","tag":"Admin · Releases","summary":"Adopt-or-create a form draft","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/fork-draft","rail":"admin","tag":"Admin · Releases","summary":"Adopt-or-create a design draft","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/records","rail":"admin","tag":"Admin · Records","summary":"List records (paginated)","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"GET","path":"/api/admin/records/{}","rail":"admin","tag":"Admin · Records","summary":"Get one record for template scenario authoring","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PATCH","path":"/api/admin/records/{}","rail":"admin","tag":"Admin · Records","summary":"Update record owner, due date or tags","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/records/bulk-delete","rail":"admin","tag":"Admin · Records","summary":"Bulk soft-delete records","credential_free":false,"scope_required":"agent:records:write","scope_variants":[]},{"method":"GET","path":"/api/admin/activity","rail":"admin","tag":"Admin · Activity","summary":"List activity-log entries (paginated)","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"GET","path":"/api/admin/trash","rail":"admin","tag":"Admin · Trash","summary":"List soft-deleted items","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/trash/purge","rail":"admin","tag":"Admin · Trash","summary":"Permanently purge all trash","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/trash/{}/{}/restore","rail":"admin","tag":"Admin · Trash","summary":"Restore a soft-deleted item","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"DELETE","path":"/api/admin/trash/{}/{}","rail":"admin","tag":"Admin · Trash","summary":"Permanently purge a single item","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"GET","path":"/api/admin/users","rail":"admin","tag":"Users","summary":"List org users","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/admin/users/{}","rail":"admin","tag":"Users","summary":"Update a user","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/admin/users/{}","rail":"admin","tag":"Users","summary":"Remove a user from this organization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/ai/chat","rail":"data","tag":"AI","summary":"AI assistant chat","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/admin/google-drive/status","rail":"admin","tag":"Organization","summary":"Google Drive connection status","credential_free":false,"scope_required":"agent:integrations:read","scope_variants":[]},{"method":"POST","path":"/api/admin/google-drive/test","rail":"admin","tag":"Organization","summary":"Test the Google Drive connection","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"POST","path":"/api/admin/google-drive/connect","rail":"admin","tag":"Organization","summary":"Start a Google Drive connection","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/google-drive/callback","rail":"admin","tag":"Organization","summary":"Complete Google Drive OAuth and return to the admin app","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/google-drive/confirm","rail":"admin","tag":"Organization","summary":"Persist a previewed Google Drive connection","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/google-drive/disconnect","rail":"admin","tag":"Organization","summary":"Disconnect Google Drive","credential_free":false,"scope_required":"agent:integrations:write","scope_variants":[]},{"method":"POST","path":"/api/admin/salesforce/connect","rail":"admin","tag":"Organization","summary":"Start an OAuth-attested Salesforce connection","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/salesforce/callback","rail":"admin","tag":"Organization","summary":"Complete Salesforce OAuth and return to the admin app","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/salesforce/confirm","rail":"admin","tag":"Organization","summary":"Preview or explicitly confirm a captured Salesforce origin","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org","rail":"data","tag":"Organization","summary":"Get the current organization","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"PUT","path":"/api/org","rail":"data","tag":"Organization","summary":"Update the organization (validated merge-patch)","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"DELETE","path":"/api/org","rail":"data","tag":"Authentication","summary":"Permanently delete the current organisation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/logo","rail":"data","tag":"Organization","summary":"Get the current organization's logo","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/logo","rail":"data","tag":"Organization","summary":"Upload the current organization's logo","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/logo","rail":"data","tag":"Organization","summary":"Remove the current organization's logo","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/secrets","rail":"data","tag":"Organization","summary":"List org integration secrets (metadata only)","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"PUT","path":"/api/org/secrets","rail":"data","tag":"Organization","summary":"Upsert an org integration secret","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/secrets","rail":"data","tag":"Organization","summary":"Delete an org integration secret","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/org/storage-credentials","rail":"data","tag":"Organization","summary":"Get document-storage credential state","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"PUT","path":"/api/org/storage-credentials","rail":"data","tag":"Organization","summary":"Set or rotate document-storage credentials","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/storage-credentials","rail":"data","tag":"Organization","summary":"Clear document-storage credentials","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/storage-credentials/test","rail":"data","tag":"Organization","summary":"Test document-storage credentials","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/admin/ai/models","rail":"admin","tag":"Organization","summary":"Live Anthropic models for this organization's key","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/ai","rail":"data","tag":"Organization","summary":"AI provisioning status for the organization","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"PUT","path":"/api/org/ai/key","rail":"data","tag":"Organization","summary":"Store the organization's own Anthropic key","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/ai/key","rail":"data","tag":"Organization","summary":"Remove the organization's own Anthropic key","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/ai/test","rail":"data","tag":"Organization","summary":"Test the organization's effective AI key","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/org/ai/usage","rail":"data","tag":"Organization","summary":"AI usage for this UTC month and last","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"POST","path":"/api/org/api-keys/proposals","rail":"data","tag":"Organization","summary":"Propose and execute a strictly narrower agent key","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/org/webhooks/{}/secret","rail":"data","tag":"Organization","summary":"Read webhook signing secret metadata","credential_free":false,"scope_required":"agent:developer:read","scope_variants":[]},{"method":"POST","path":"/api/org/webhooks/{}/secret/rotate","rail":"data","tag":"Organization","summary":"Rotate the webhook signing secret","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"POST","path":"/api/org/webhooks/{}/secret/retire","rail":"data","tag":"Organization","summary":"Retire the previous webhook signing secret","credential_free":false,"scope_required":"agent:developer:write","scope_variants":[]},{"method":"GET","path":"/api/org/webhooks","rail":"data","tag":"Organization","summary":"List webhook subscriptions","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/webhooks","rail":"data","tag":"Organization","summary":"Create a webhook subscription","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/webhooks/{}","rail":"data","tag":"Organization","summary":"Revoke a webhook subscription","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/webhooks/{}/test","rail":"data","tag":"Organization","summary":"Send a signed test event","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/webhooks/{}/deliveries","rail":"data","tag":"Organization","summary":"List recent webhook deliveries","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/webhooks/{}/deliveries/{}/replay","rail":"data","tag":"Organization","summary":"Replay a webhook delivery","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/storage-destinations","rail":"data","tag":"Organization","summary":"List storage destinations","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/storage-destinations","rail":"data","tag":"Organization","summary":"Create a storage destination","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/org/storage-destinations/{}","rail":"data","tag":"Organization","summary":"Update a storage destination","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/storage-destinations/{}","rail":"data","tag":"Organization","summary":"Revoke a storage destination","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/storage-destinations/{}/test","rail":"data","tag":"Organization","summary":"Test a storage destination","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/storage-destinations/{}/deliveries","rail":"data","tag":"Organization","summary":"List recent storage deliveries","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/storage-destinations/{}/deliveries/{}/replay","rail":"data","tag":"Organization","summary":"Replay a storage delivery","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/members","rail":"data","tag":"Organization","summary":"List org members","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/invites","rail":"data","tag":"Organization","summary":"List pending invitations","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/invite","rail":"data","tag":"Organization","summary":"Invite a member","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/invites/{}","rail":"data","tag":"Organization","summary":"Revoke an invitation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/org/members/{}/role","rail":"data","tag":"Organization","summary":"Change a member's role","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/members/{}/ownership","rail":"data","tag":"Organization","summary":"Transfer organization ownership","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/members/{}","rail":"data","tag":"Organization","summary":"Remove a member","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/members/{}/password-reset","rail":"data","tag":"Organization","summary":"Send a member a password-reset email","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/members/{}/passkeys","rail":"data","tag":"Organization","summary":"Remove a member identity's passkeys","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/api-keys/templates","rail":"data","tag":"Organization","summary":"List API key templates","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/api-keys","rail":"data","tag":"Organization","summary":"List active API keys","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/org/api-keys","rail":"data","tag":"Organization","summary":"Create an API key","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/agent-connections/{}","rail":"data","tag":"Organization","summary":"End a signed-in agent connection in this organization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PATCH","path":"/api/org/api-keys/{}","rail":"data","tag":"Organization","summary":"Update an API key restriction","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/org/api-keys/{}","rail":"data","tag":"Organization","summary":"Revoke an API key","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/org/api-keys/{}/requests","rail":"data","tag":"Organization","summary":"List an API key's request log","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/platform/orgs","rail":"data","tag":"Platform","summary":"List all organizations (operator overview)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/platform/orgs/{}","rail":"data","tag":"Platform","summary":"Inspect an organization's usage and active owners","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/platform/learning-funnel","rail":"data","tag":"Platform","summary":"Read the learning activation funnel, five numbers and the guardrail","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/platform/import-source-protocol","rail":"data","tag":"Platform","summary":"Preflight the Import Anything source-retention protocol","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/platform/import-source-protocol/{}","rail":"data","tag":"Platform","summary":"Run an audited Import Anything source-retention action","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/platform/orgs/{}/plan","rail":"data","tag":"Platform","summary":"Set an organization's plan tier","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/platform/orgs/{}/import-rates","rail":"data","tag":"Platform","summary":"Set an organization's import rate overrides","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/platform/orgs/{}/sms-daily-cap","rail":"data","tag":"Platform","summary":"Set an organization's shared daily SMS cap","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/platform/orgs/{}/api-keys/{}/connector-binding","rail":"data","tag":"Platform","summary":"Bind an API key as the Salesforce connector","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/salesforce/test-fill-receipt","rail":"data","tag":"Records","summary":"Bounded Salesforce connector test-fill receipt","credential_free":false,"scope_required":"salesforce:receipts:read","scope_variants":[]},{"method":"POST","path":"/api/billing/checkout","rail":"data","tag":"Billing","summary":"Create a Stripe Checkout session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/billing/portal","rail":"data","tag":"Billing","summary":"Create a Stripe Customer Portal session","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/billing/status","rail":"data","tag":"Billing","summary":"Get billing status","credential_free":false,"scope_required":"agent:people:read","scope_variants":[]},{"method":"POST","path":"/api/billing/webhook","rail":"public","tag":"Billing","summary":"Stripe webhook","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/csp-reports","rail":"public","tag":"Monitoring","summary":"Receive browser content security policy reports","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/monitoring","rail":"public","tag":"Monitoring","summary":"Sentry telemetry tunnel","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/{}/annotations/dry-run","rail":"admin","tag":"Admin · Authoring","summary":"Dry-run an annotation batch against a model draft","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/models/{}/{}/annotations/apply","rail":"admin","tag":"Admin · Authoring","summary":"Apply an annotation batch to a model draft","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/{}/annotations/dry-run","rail":"admin","tag":"Admin · Authoring","summary":"Dry-run an annotation batch against a form draft","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/{}/annotations/apply","rail":"admin","tag":"Admin · Authoring","summary":"Apply an annotation batch to a form draft","credential_free":false,"scope_required":"catalog:write","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/{}/annotations/dry-run","rail":"admin","tag":"Admin · Authoring","summary":"Dry-run an annotation batch against a template design draft","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/{}/annotations/apply","rail":"admin","tag":"Admin · Authoring","summary":"Apply an annotation batch to a template design draft","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/checks/sweep","rail":"admin","tag":"Template Designs","summary":"Retroactively sweep the template's documents against its current checks","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/check-findings","rail":"admin","tag":"Template Designs","summary":"The template's document-check findings across all documents","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/documents","rail":"admin","tag":"Template Designs","summary":"Documents generated from any version of this template","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/documents/{}/check-findings","rail":"data","tag":"Documents","summary":"One document's check findings with disposition history","credential_free":false,"scope_required":"agent:records:read","scope_variants":[]},{"method":"POST","path":"/api/admin/check-findings/{}/dispositions","rail":"admin","tag":"Template Designs","summary":"Record a disposition on a finding (append-only, D10)","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/signing","rail":"admin","tag":"Template Designs","summary":"Signing ceremonies pinned to any version of this template","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/designs/{}/checks/draft","rail":"admin","tag":"Template Designs","summary":"AI-draft a document check from a plain-language rule","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/families/{}/dedup/scan","rail":"admin","tag":"Admin · Authoring","summary":"Scan one model family for same-question field clusters","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/families/{}/dedup/rebind/dry-run","rail":"admin","tag":"Admin · Authoring","summary":"Preview folding merged fields into a canonical field, exactly","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/families/{}/dedup/rebind/apply","rail":"admin","tag":"Admin · Authoring","summary":"Apply the identical rebind batch to the family's draft forms","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/migration/batches","rail":"admin","tag":"Admin · Migration","summary":"Plan a record-migration batch","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"GET","path":"/api/admin/migration/batches","rail":"admin","tag":"Admin · Migration","summary":"List record-migration batches","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/migration/batches/{}","rail":"admin","tag":"Admin · Migration","summary":"Record-migration batch detail","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/migration/batches/{}/execute","rail":"admin","tag":"Admin · Migration","summary":"Execute (a chunk of) a planned record-migration batch","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/migration/batches/{}/reverse","rail":"admin","tag":"Admin · Migration","summary":"Reverse (a chunk of) an executed record-migration batch","credential_free":false,"scope_required":"agent:authoring:write","scope_variants":[]},{"method":"POST","path":"/api/admin/model-impact-counts","rail":"admin","tag":"Admin · Migration","summary":"Live blast-radius counts for the model editor","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"GET","path":"/api/admin/personas","rail":"admin","tag":"Admin · Personas","summary":"List the saved persona library for a model family (L4)","credential_free":false,"scope_required":"agent:people:read","scope_variants":[]},{"method":"POST","path":"/api/admin/personas","rail":"admin","tag":"Admin · Personas","summary":"Save a new persona","credential_free":false,"scope_required":"agent:people:write","scope_variants":[]},{"method":"PUT","path":"/api/admin/personas/{}","rail":"admin","tag":"Admin · Personas","summary":"Rename and/or re-answer a saved persona","credential_free":false,"scope_required":"agent:people:write","scope_variants":[]},{"method":"DELETE","path":"/api/admin/personas/{}","rail":"admin","tag":"Admin · Personas","summary":"Delete a saved persona","credential_free":false,"scope_required":"agent:people:write","scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/{}/passport","rail":"admin","tag":"Admin · Forms","summary":"Get the newest issued Correctness Passport for a form version (X6)","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"POST","path":"/api/admin/forms/{}/{}/passport","rail":"admin","tag":"Admin · Forms","summary":"Re-certify an existing form passport","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/concepts","rail":"admin","tag":"Admin · Concepts","summary":"List the org's concept lattice (M5)","credential_free":false,"scope_required":"agent:authoring:read","scope_variants":[]},{"method":"POST","path":"/api/admin/concepts","rail":"admin","tag":"Admin · Concepts","summary":"Create a concept from a scan proposal","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/concepts/scan","rail":"admin","tag":"Admin · Concepts","summary":"Scan every live model in the org for cross-model concept proposals (M5)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/concepts/{}/adjudicate","rail":"admin","tag":"Admin · Concepts","summary":"Confirm or reject a field's membership in a concept","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/admin/concepts/{}","rail":"admin","tag":"Admin · Concepts","summary":"Delete a concept and every one of its member rows","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/estate-memory","rail":"admin","tag":"Admin · Import","summary":"List the org's house-style seeds (I2)","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/estate-memory/{}/prune","rail":"admin","tag":"Admin · Import","summary":"Prune a house-style seed (I2)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/estate-memory/{}/restore","rail":"admin","tag":"Admin · Import","summary":"Restore a pruned house-style seed (I2)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/admin/estate-memory/{}","rail":"admin","tag":"Admin · Import","summary":"Permanently erase one house-style seed","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/approvals","rail":"admin","tag":"Admin · Approvals","summary":"List the org's agent co-sign requests (approval inbox)","credential_free":false,"scope_required":"agent:people:read","scope_variants":[]},{"method":"POST","path":"/api/admin/approvals/{}/approve","rail":"admin","tag":"Admin · Approvals","summary":"Co-sign (approve) an over-threshold agent commit","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/approvals/{}/refuse","rail":"admin","tag":"Admin · Approvals","summary":"Refuse an over-threshold agent commit","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning/agent-sandbox","rail":"data","tag":"Learning","summary":"Mint or adopt the caller's expiring agent practice environment","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/demo-workspace/artifact-receipt","rail":"data","tag":"Learning","summary":"Read one exact self-scoped Learning artifact receipt","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/videos/{}/playback-token","rail":"data","tag":"Learning","summary":"Mint a short-lived signed Cloudflare Stream playback token","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/learning-overview","rail":"data","tag":"Learning","summary":"Read the caller's exact Learning rebuild consequence","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-overview/refresh","rail":"data","tag":"Learning","summary":"Refresh the certificate from durable Learning progress","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/lifecycle-link-opened","rail":"data","tag":"Learning","summary":"Record that the caller opened a link in a lifecycle email","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/learning-email-preferences","rail":"data","tag":"Learning","summary":"Read the caller's own Learning email consent","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/learning-email-preferences","rail":"data","tag":"Learning","summary":"Start or stop Learning email for the caller","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/builder-preferences","rail":"data","tag":"Admin · Forms","summary":"Read the caller's own builder pinned actions","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/builder-preferences","rail":"data","tag":"Admin · Forms","summary":"Replace the caller's own builder pinned actions","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/conversations","rail":"data","tag":"Assistant","summary":"List the caller's own assistant conversations for one form","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/conversations","rail":"data","tag":"Assistant","summary":"Open the caller's own conversation about one form","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/conversations/{}","rail":"data","tag":"Assistant","summary":"Read the caller's own conversation with its recent turns","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/assistant/conversations/{}","rail":"data","tag":"Assistant","summary":"Delete the caller's own conversation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/conversations/{}/turns","rail":"data","tag":"Assistant","summary":"Send one message or answer in the caller's own conversation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/conversations/{}/turns/by-request/{}","rail":"data","tag":"Assistant","summary":"Recover a turn by the client's request id","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/conversations/{}/turns/{}","rail":"data","tag":"Assistant","summary":"Read one turn's current state","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/conversations/{}/turns/{}/cancel","rail":"data","tag":"Assistant","summary":"Cancel a pending or failed turn","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/conversations/{}/turns/{}/retry","rail":"data","tag":"Assistant","summary":"Retry a failed or expired turn with its exact original request","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/preferences","rail":"data","tag":"Assistant","summary":"Read the caller's own assistant preference for one scope","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/assistant/preferences","rail":"data","tag":"Assistant","summary":"Replace the caller's own assistant preference for one scope","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/visits","rail":"data","tag":"Assistant","summary":"Start a this-visit preference override for one form","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/assistant/visits/{}","rail":"data","tag":"Assistant","summary":"Change this visit's settings","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/assistant/visits/{}","rail":"data","tag":"Assistant","summary":"End this visit","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/assistant/invitations/{}/dismissal","rail":"data","tag":"Assistant","summary":"Dismiss the assistant invitation for one form","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/assistant/invitations/{}/dismissal","rail":"data","tag":"Assistant","summary":"Show the assistant invitation for one form again","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/notes","rail":"data","tag":"Assistant","summary":"List the caller's own understanding notes for one form","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/assistant/notes","rail":"data","tag":"Assistant","summary":"Keep or save one understanding note","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PATCH","path":"/api/me/assistant/notes/{}","rail":"data","tag":"Assistant","summary":"Correct or save one understanding note","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/assistant/notes/{}","rail":"data","tag":"Assistant","summary":"Delete one understanding note","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/assistant/export","rail":"data","tag":"Assistant","summary":"Export the caller's own assistant data, one bounded page at a time","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/email/unsubscribe","rail":"public","tag":"Learning","summary":"Report whether an unsubscribe link still works","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/email/unsubscribe","rail":"public","tag":"Learning","summary":"Stop Learning email for the person the token names","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal/preflight","rail":"data","tag":"Learning","summary":"Read the caller's exact Learning Seal readiness","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal/alternate/start","rail":"data","tag":"Learning","summary":"Start alternate-address verification for Learning Seal","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal/alternate/verify","rail":"data","tag":"Learning","summary":"Verify an alternate address for Learning Seal","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal/{}/replace","rail":"data","tag":"Learning","summary":"Replace one OTP-stranded Learning Seal ceremony","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal","rail":"data","tag":"Learning","summary":"Create or adopt the caller's one Learning Seal ceremony","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning-seal/reseal","rail":"data","tag":"Learning","summary":"Seal the caller's updated Learning certificate","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/demo-workspace/promote/dry-run","rail":"data","tag":"Learning","summary":"Check the caller's practice-family promotion","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/demo-workspace/promote","rail":"data","tag":"Learning","summary":"Promote the caller's practice family into workspace drafts","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/promotion-requests","rail":"data","tag":"Learning","summary":"Request promotion of the caller's current practice generation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/promotion-requests","rail":"data","tag":"Learning","summary":"List the caller's promotion requests","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/learning/promotion-requests","rail":"admin","tag":"Learning","summary":"List promotion requests for the current organization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/learning/generation-ceilings","rail":"admin","tag":"Learning","summary":"Read fixed practice-generation ceilings for the current organization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/learning/consent-state","rail":"admin","tag":"Learning","summary":"Read current members' Learning email consent state","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/learning/former-member-evidence","rail":"admin","tag":"Learning","summary":"Read retained Learning evidence counts for former members","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/learning/promotion-requests/{}/authorize","rail":"admin","tag":"Learning","summary":"Approve and immediately execute a promotion request","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/learning/promotion-requests/{}/refuse","rail":"admin","tag":"Learning","summary":"Refuse a requested promotion","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/learning/promotion-requests/{}/revoke","rail":"admin","tag":"Learning","summary":"Revoke a live promotion authorization","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/learning/promotion-requests/{}/dry-run","rail":"admin","tag":"Learning","summary":"Check a promotion request without writing","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/learning/promotion-requests/{}/execute","rail":"admin","tag":"Learning","summary":"Execute an authorized promotion request","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/demo-workspace","rail":"data","tag":"Learning","summary":"Seed or reset the caller's demo workspace","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/demo-workspace","rail":"data","tag":"Learning","summary":"Read the caller's in-flight demo-workspace work","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/demo-workspace","rail":"data","tag":"Learning","summary":"Remove or resume the caller's exact demo-workspace generation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/onboarding","rail":"data","tag":"Learning","summary":"Read the caller's onboarding projection","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/onboarding","rail":"data","tag":"Learning","summary":"Apply one caller-owned onboarding intent under CAS","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/onboarding/entry-card","rail":"data","tag":"Learning","summary":"Save the caller's first Home Learning entry choice","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"PUT","path":"/api/me/learning/optional-chapters/{}","rail":"data","tag":"Learning","summary":"Start one caller-owned optional Learning chapter under CAS","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/learning/optional-chapters/{}/reconcile","rail":"data","tag":"Learning","summary":"Re-derive one optional Learning chapter from durable state","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/me/onboarding/reconcile","rail":"data","tag":"Learning","summary":"Persist server-observed onboarding reconciliation","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/learning/events","rail":"data","tag":"Learning","summary":"Ingest a batch of Learning client events (Phase 1a)","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/findings","rail":"admin","tag":"Admin","summary":"List computed cleanup findings","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/dispositions","rail":"admin","tag":"Admin","summary":"Decide or restore listed cleanup findings as one group","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/rule-mutes","rail":"admin","tag":"Admin","summary":"Mute one cleanup finding kind","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/admin/cleanup/rule-mutes/{}","rail":"admin","tag":"Admin","summary":"Unmute one cleanup finding kind","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/element","rail":"admin","tag":"Admin","summary":"Read one Cleanup element dossier","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/impact","rail":"admin","tag":"Admin","summary":"Assess removal dependents for one Cleanup element","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/draft-delta","rail":"admin","tag":"Admin","summary":"Compare model-family health with one draft substituted in memory","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/models/{}/{}/health","rail":"admin","tag":"Admin","summary":"List cleanup findings touching one model version","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/{}/health","rail":"admin","tag":"Admin","summary":"List cleanup findings touching one form version","credential_free":false,"scope_required":"catalog:read","scope_variants":[]},{"method":"GET","path":"/api/admin/designs/{}/{}/health","rail":"admin","tag":"Admin","summary":"List cleanup findings touching one design version","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/findings/{}/dispositions","rail":"admin","tag":"Admin","summary":"Append a human cleanup disposition","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/intent-cards","rail":"admin","tag":"Admin","summary":"Append a human stewardship intent card","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/intent-cards/{}/withdraw","rail":"admin","tag":"Admin","summary":"Append a withdrawn state for one intent card","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/journeys","rail":"admin","tag":"Admin","summary":"List derived retirement journeys for deprecated fields","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/receipts","rail":"admin","tag":"Admin","summary":"List available ledger-generated cleanup receipts","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/cleanup/receipts/{}","rail":"admin","tag":"Admin","summary":"Download one canonical cleanup proof receipt","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/fixes/plan","rail":"admin","tag":"Admin","summary":"Validate and preview cleanup fixes without writes","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/cleanup/fixes/apply","rail":"admin","tag":"Admin","summary":"Apply a source-bound cleanup plan","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/admin/builder-sessions","rail":"admin","tag":"Admin","summary":"Start a conversational Build","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"GET","path":"/api/admin/builder-sessions/{}","rail":"admin","tag":"Admin","summary":"Read one conversational Build","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/builder-sessions/{}/drafts","rail":"admin","tag":"Admin","summary":"Read a Build session's current draft model, form and template","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/builder-sessions/{}/lineage","rail":"admin","tag":"Admin","summary":"Explain why one Build artifact exists","credential_free":false,"scope_required":"agent:lifecycle:read","scope_variants":[]},{"method":"GET","path":"/api/admin/builder-sessions/{}/socket","rail":"admin","tag":"Admin","summary":"Connect to one conversational Build","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/admin/builder-sessions/{}/finalize","rail":"admin","tag":"Admin","summary":"Save one conversational Build as three drafts","credential_free":false,"scope_required":"agent:lifecycle:write","scope_variants":[]},{"method":"POST","path":"/api/auth/signup","rail":"public","tag":"Authentication","summary":"Start email signup or resend a six-digit verification code","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/signup/verify","rail":"public","tag":"Authentication","summary":"Verify email and create an account, free organisation and owner session","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/auth/oauth/verify","rail":"public","tag":"Authentication","summary":"Verify mailbox ownership before linking a provider identity","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/oauth/google/start","rail":"public","tag":"Authentication","summary":"Start google sign-in","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/oauth/google/callback","rail":"public","tag":"Authentication","summary":"Callback google sign-in","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/oauth/microsoft/start","rail":"public","tag":"Authentication","summary":"Start microsoft sign-in","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/auth/oauth/microsoft/callback","rail":"public","tag":"Authentication","summary":"Callback microsoft sign-in","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/signup-packs","rail":"data","tag":"Authentication","summary":"List suggested and all signup packs","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/me/signup-packs","rail":"data","tag":"Authentication","summary":"Add selected packs as drafts to an empty organisation","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/auth/account","rail":"data","tag":"Authentication","summary":"Delete the current account","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/fill-links/embed/exchange","rail":"public","tag":"Public Fill Links","summary":"Exchange a website embed capability for a blank-fill session","credential_free":true,"scope_required":null,"scope_variants":[]},{"method":"POST","path":"/api/fill-links/record/upload","rail":"data","tag":"Public Fill Links","summary":"Upload an answer to a public fill-link question","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/admin/forms/{}/embed","rail":"admin","tag":"Fill Links","summary":"Read website embedding settings and copyable snippets","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/admin/forms/{}/embed","rail":"admin","tag":"Fill Links","summary":"Enable, update or disable website embedding","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/metrics","rail":"admin","tag":"Admin · Records","summary":"Organization metrics for Home","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/records.csv","rail":"admin","tag":"Admin · Records","summary":"Export up to 5000 filtered records as CSV","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/records/assignees","rail":"admin","tag":"Admin · Records","summary":"List active firm members available as record owners","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/record-views","rail":"admin","tag":"Admin · Records","summary":"List firm-wide saved record views","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/record-views","rail":"admin","tag":"Admin · Records","summary":"Save a firm-wide record view","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/admin/record-views/{}","rail":"admin","tag":"Admin · Records","summary":"Soft-delete a firm-wide record view","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/retention-policies","rail":"admin","tag":"Admin · Retention","summary":"List document type retention periods and live document counts","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/admin/retention-policies/{}","rail":"admin","tag":"Admin · Retention","summary":"Set a document type retention period","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/admin/retention-policies/{}","rail":"admin","tag":"Admin · Retention","summary":"Remove a document type retention period","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/admin/exports","rail":"admin","tag":"Admin · Activity","summary":"Queue an organization export","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/exports/{}","rail":"admin","tag":"Admin · Activity","summary":"Get organization export status","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/exports/{}/download","rail":"admin","tag":"Admin · Activity","summary":"Download the completed organization ZIP","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/ceremonies/{}/summary","rail":"admin","tag":"Signing Administration","summary":"Read who signed a completed ceremony","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/admin/activity.csv","rail":"admin","tag":"Admin · Activity","summary":"Download activity as CSV","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/org/action-catalogue","rail":"data","tag":"Organization","summary":"List packaged actions and installed slots","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/org/action-catalogue/{}/install","rail":"data","tag":"Organization","summary":"Install a packaged action","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/org/action-catalogue/{}","rail":"data","tag":"Organization","summary":"Remove an installed packaged action","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/me/agent-connections","rail":"data","tag":"Authentication","summary":"List the signed-in person's agent connections","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"DELETE","path":"/api/me/agent-connections/{}","rail":"data","tag":"Authentication","summary":"End one of the signed-in person's agent connections","credential_free":false,"scope_required":null,"scope_variants":[]},{"method":"GET","path":"/api/me/notification-preferences","rail":"data","tag":"Organization","summary":"Read your resolved email notification preferences","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/me/notification-preferences","rail":"data","tag":"Organization","summary":"Update your email preferences","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/plans","rail":"agent","tag":"Agent Rail","summary":"Rehearse an administrative change","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/metrics","rail":"agent","tag":"Agent Rail","summary":"Organization metrics for Home","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/record-export","rail":"agent","tag":"Agent Rail","summary":"Export up to 5000 filtered records as CSV","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/record-assignees","rail":"agent","tag":"Agent Rail","summary":"List active firm members available as record owners","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/record-views","rail":"agent","tag":"Agent Rail","summary":"List firm-wide saved record views","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/record-views","rail":"agent","tag":"Agent Rail","summary":"Save a firm-wide record view","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/agent/record-views/{}","rail":"agent","tag":"Agent Rail","summary":"Soft-delete a firm-wide record view","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PATCH","path":"/api/agent/records/{}/metadata","rail":"agent","tag":"Agent Rail","summary":"Update record owner, due date or tags","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/retention-policies","rail":"agent","tag":"Agent Rail","summary":"List document type retention periods and live document counts","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/agent/retention-policies/{}","rail":"agent","tag":"Agent Rail","summary":"Set a document type retention period","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/agent/retention-policies/{}","rail":"agent","tag":"Agent Rail","summary":"Remove a document type retention period","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/exports","rail":"agent","tag":"Agent Rail","summary":"Queue an organization export","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/exports/{}","rail":"agent","tag":"Agent Rail","summary":"Get organization export status","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/exports/{}/download","rail":"agent","tag":"Agent Rail","summary":"Download the completed organization ZIP","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/activity-export","rail":"agent","tag":"Agent Rail","summary":"Download activity as CSV","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/actions","rail":"agent","tag":"Agent Rail","summary":"List packaged actions and installed slots","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/actions/{}/install","rail":"agent","tag":"Agent Rail","summary":"Install a packaged action","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"DELETE","path":"/api/agent/actions/{}","rail":"agent","tag":"Agent Rail","summary":"Remove an installed packaged action","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/notification-preferences","rail":"agent","tag":"Agent Rail","summary":"Read a member's email notification preferences","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/agent/notification-preferences","rail":"agent","tag":"Agent Rail","summary":"Update a member's email notification preferences","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/packs","rail":"agent","tag":"Agent Rail","summary":"List suggested and all signup packs","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"POST","path":"/api/agent/packs/install","rail":"agent","tag":"Agent Rail","summary":"Add selected packs as drafts to an empty organisation","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/forms/{}/embed","rail":"agent","tag":"Agent Rail","summary":"Read website embedding settings and copyable snippets","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"PUT","path":"/api/agent/forms/{}/embed","rail":"agent","tag":"Agent Rail","summary":"Enable, update or disable website embedding","credential_free":false,"scope_required":"signing:agent","scope_variants":[]},{"method":"GET","path":"/api/agent/ceremonies/{}/summary","rail":"agent","tag":"Agent Rail","summary":"Read who signed a completed ceremony","credential_free":false,"scope_required":"signing:agent","scope_variants":[]}],"refusal_codes":[{"code":"CO_COMMIT_THRESHOLD_EXCEEDED","meaning":"The amount is above the mandate's co_commit threshold: a human co-committer is required."},{"code":"MANDATE_EXPIRED","meaning":"The mandate's valid_until has passed. A new mandate is required; retrying cannot help."},{"code":"MANDATE_KEY_MISMATCH","meaning":"The presented API key is not the key the mandate is bound to. A mandate is bound to one key for life."},{"code":"MANDATE_NOT_YET_VALID","meaning":"The commit was attempted before the mandate's valid_from. Retry after that instant, not sooner."},{"code":"MANDATE_REVOKED","meaning":"The mandate was revoked. Nothing the agent can send will succeed; a human must issue a new mandate."},{"code":"SCOPE_AREA_CEILING_EXCEEDED","meaning":"The capability reached its area operation ceiling."},{"code":"SCOPE_AREA_NOT_PERMITTED","meaning":"The mandate does not allow this capability in its mapped area group."},{"code":"SCOPE_AREA_RESOURCE_NOT_PERMITTED","meaning":"The capability targets a model or entity outside the area allowlist."},{"code":"SCOPE_AUTHORING_DESTRUCTIVE_CHANGE","meaning":"The requested model authoring change removes or re-types a field; mandates permit additive changes only."},{"code":"SCOPE_AUTHORING_NOT_PERMITTED","meaning":"The requested model authoring change is outside the mandate's authoring allowlist."},{"code":"SCOPE_CONDITION_FAILED","meaning":"A mandate scope condition evaluated false against the frozen fact snapshot."},{"code":"SCOPE_CURRENCY_MISMATCH","meaning":"The fact's currency differs from the currency the ceiling or threshold declares."},{"code":"SCOPE_DEFINITION_NOT_PERMITTED","meaning":"The ceremony definition is outside the mandate's ceremony_definitions allowlist."},{"code":"SCOPE_DOCUMENT_CLASS_NOT_PERMITTED","meaning":"The ceremony's pinned model/template-design pair is outside the mandate's document_classes allowlist."},{"code":"SCOPE_FACT_INVALID","meaning":"A fact a ceiling or threshold depends on resolved but is not a valid decimal/shape."},{"code":"SCOPE_FACT_MISSING","meaning":"A fact path a ceiling or threshold depends on is absent from the frozen snapshot. Fill the record before freezing."},{"code":"SCOPE_MONETARY_EXCEEDED","meaning":"A monetary ceiling was exceeded (or an amount fell under a declared minimum)."},{"code":"VOLUME_CEILING_EXCEEDED","meaning":"The mandate's total or rolling-24h commitment ceiling is reached. Also raised by the pre-commit consumption guard."}],"problem_vocabulary":{"media_type":"application/problem+json","type_base":"https://quilltasks.com/problems/","members":["type","title","status","detail","code","retryable","retry_after","owner_action_required"],"core_codes":["AGENT_KEY_CLASS_REQUIRED","AGENT_MANDATE_REFUSED","AGENT_MANDATE_REQUIRED","AGENT_OPERATION_CONFLICT","AGENT_WRITE_REFUSED","AI_OUTPUT_INVALID","CAPABILITY_EXCLUDED","CAPABILITY_UNKNOWN","CAPABILITY_VERSION_MISMATCH","CONFIG_ERROR","CONFLICT","CONTEXT_REPLAY_REQUIRED","CONTEXT_STALE","CONTEXT_TOO_LARGE","COPY_NOT_OFFERED","COPY_OFFER_STALE","COPY_SELECTION_UNKNOWN","COPY_SOURCE_NOT_FOUND","COPY_SOURCE_OTHER_MODEL","COPY_SOURCE_OTHER_TYPE","COPY_STATE_TOO_LARGE","COPY_TARGET_NOT_EMPTY","CSRF","DB_ERROR","DOCUMENT_SIGNING_ACTIVE","DOCUMENT_SIGNING_PINNED","DOCUMENT_SIGNING_SEALED","EXPIRED","EXTERNAL_SERVICE","FILL_LINK_DRAFT_UNAVAILABLE","FORBIDDEN","GENERATION_CLIENT_REQUEST_ID_INVALID","GENERATION_CLIENT_REQUEST_ID_REQUIRED","GENERATION_REQUEST_IN_PROGRESS","GENERATION_REQUEST_MISMATCH","GOOGLE_DRIVE_NOT_CONNECTED","IDEMPOTENCY_KEY_REQUIRED","INTEGRATION_KEY_FROZEN","INTERNAL","INVALID_INPUT","KEY_MINT_NOT_ATTENUATED","MALFORMED_BODY","METHOD_NOT_ALLOWED","MISSING_FIELD","MODEL_SCOPE_UNRESOLVED","NOT_FOUND","PAYLOAD_TOO_LARGE","PLAN_REQUIRED","PLAN_STALE","PROPOSAL_REQUIRED","PROPOSAL_STALE","QUESTION_STALE","RATE_LIMITED","REQUEST_ID_REUSED","REVISION_STALE","SERVICE_UNAVAILABLE","SESSION_REQUIRED","STORAGE_DELIVERY_ACTIVE","STORAGE_DESTINATION_LIMIT","STORAGE_ENDPOINT_BLOCKED","TIMEOUT","TURN_ACTIVE","UNAUTHORIZED","VALIDATION_FAILED","WEBHOOK_DELIVERY_ACTIVE","WEBHOOK_SUBSCRIPTION_LIMIT","WEBHOOK_URL_BLOCKED"],"extension_members":["details","errors","blockers","refusal","suggested_patch","current_updated_at"]},"deprecations":[],"deprecation_policy":{"min_window_days":90,"negotiation":"Pin the content_sha256 you built against. When it changes, re-read this manifest and diff `routes` and `refusal_codes` before your next call; anything listed in `deprecations` keeps working for at least min_window_days after it first appears there.","breaking_change_signal":"manifest_format_version increments only for a breaking change to this document's own shape.","removal_process":["A route or refusal code being withdrawn is added to `deprecations` with a `removed_after` date.","It keeps working, unchanged, for at least min_window_days from that date's first publication.","It disappears from `routes`/`refusal_codes` only after that window closes."]},"containment":{"statement":"Quill contains an agent by construction, not by asking it to behave: the agent's authority is a hash-verified mandate evaluated server-side over a frozen fact snapshot, its credential is bound to one org, its rails carry kill-switches and rate buckets, and Quill's own model calls cannot execute anything. Each claim below cites the code that enforces it.","claims":[{"id":"ai-annotation-endpoint-is-tool-free","claim":"The /api/ai/chat validation and model-authoring modes are tool-free. They parse provider text as declarative typed annotations, apply a mode-specific server allowlist and shared shape validation, and drop malformed or out-of-vocabulary output before returning it. This claim is scoped to that annotation endpoint, not to every Quill AI feature.","evidence":["packages/api/src/routes/ai.js:22","packages/api/src/routes/ai.js:351"]},{"id":"builder-tool-loop-is-server-bound","claim":"Build currently exposes nine named server-bound tools. The gateway strips each execute function from the provider payload, rejects unknown or invalid calls as tool errors, and stops after four provider rounds. Builder intent writes pass through its projector, evidence and approval rules, draft validators, a three-attempt repair ceiling, and the durable event ledger. The tools expose no shell or model-selected network target; the oracle is a closed seven-action, local, read-only evaluator. Recheck the counts and ceilings whenever the Builder gateway changes.","evidence":["packages/api/src/aiGateway.js:729","packages/api/src/aiGateway.js:1012","packages/api/src/builderSession.js:80","packages/api/src/builderSession.js:2704"]},{"id":"model-mode-emits-assemble-only","claim":"M2's model-authoring AI mode cannot emit incremental model edits. It is allowlisted to exactly one annotation type, model.assemble, and the server drops the whole reply unless it is exactly ONE shape-valid model.assemble annotation — never a batch, never any other model annotation type.","evidence":["packages/api/src/routes/ai.js:108"]},{"id":"keys-are-org-bound","claim":"An API key cannot choose its tenant. The org is resolved server-side from the key's SHA-256 hash; the legacy X-Quill-Org header is ignored (AUTH-1).","evidence":["packages/api/src/auth.js:889"]},{"id":"scoped-keys-are-default-deny","claim":"A scoped key may call only the exact operations its scopes admit; every unlisted route is denied. A malformed scope value normalizes to the empty list and fails closed.","evidence":["packages/api/src/apiKeyScopes.js:821"]},{"id":"mandate-evaluation-fails-closed","claim":"Authority is never evaluated over a drifted or malformed mandate: a stored mandate whose recomputed hash disagrees with its stored hash THROWS instead of evaluating, and a malformed scope throws at evaluation time.","evidence":["packages/api/src/signing/mandateService.js:57","packages/schema/src/mandate.mjs:95"]},{"id":"rails-have-kill-switches","claim":"Every rail carries a merged-dormant flag. A missing or non-exact flag returns a byte-identical 404 before preflight, rate limiting, CSRF, or any state is touched — the flag is a rollback lever, not a shipping gate.","evidence":["packages/api/src/routes/signingAgent.js:209","packages/api/src/routes/verify.js:116"]},{"id":"every-route-has-a-rate-bucket","claim":"Request volume is bounded per route by a declared bucket; the agent rail's buckets are keyed per IP AND per presented-key HMAC, so one key cannot spend the whole rail's budget.","evidence":["packages/api/src/index.js:853"]},{"id":"outbound-callouts-are-allowlisted","claim":"Custom-action callouts are deny-by-default: https only, host must be on the action's explicit allowlist, and a private/loopback/reserved IP literal is rejected even when allowlisted.","evidence":["packages/api/src/ssrf.js:153"]},{"id":"public-surfaces-carry-a-csp","claim":"The credential-free browser surfaces ship a Content-Security-Policy alongside no-store caching and nosniff, so a public rail cannot become a script-injection surface.","evidence":["packages/api/src/routes/fillLinks.js:2054"]},{"id":"protocol-adapters-are-curated","claim":"The MCP and A2A adapters cannot become a generic HTTP bridge: each named tool maps to a fixed agent-rail operation, while the Worker reconstructs a fresh request and forwards only an explicit credential/header allowlist.","evidence":["packages/mcp/src/core.js:1922","packages/api/src/routes/agentProtocols.js:97"]}]},"discovery":{"manifest":"/.well-known/quill-agent-manifest","skill":"/.well-known/quill-agent-skill","agent_card":"/.well-known/agent-card.json","agent_card_recommended":"/.well-known/agent.json","mcp":"/mcp","a2a":"/a2a","whoami":"/api/agent/whoami","constraints":"/api/agent/constraints","provenance":"/api/agent/provenance","agents_md":"/api/agent/agents-md"},"runtime":{"rails":{"agent":{"dormant_flag":"SIGNING_AGENT_COMMIT_ENABLED","enabled":true},"agent_protocols":{"dormant_flag":"SIGNING_AGENT_COMMIT_ENABLED","enabled":true},"agent_discovery":{"dormant_flag":null,"enabled":true},"public_signing":{"dormant_flag":"SIGNING_PUBLIC_READ_ENABLED","enabled":true},"public_verify":{"dormant_flag":"SIGNING_PUBLIC_VERIFY_ENABLED","enabled":true},"public_fill_links":{"dormant_flag":"FILL_LINK_PUBLIC_READ_ENABLED","enabled":true}}}}