{"name":"Agent Middleware API","version":"1.3.0","agent_first":{"primary_audience":"autonomous_agents","design_principle":"agent_first","positioning":{"schema_version":"1.0","effective_date":"2026-08-28","id":"transaction_integrity_for_consequential_autonomous_actions","label":"Transaction integrity for consequential autonomous actions","tagline":"Make consequential agent actions transactional.","legacy_aliases":["governed_mcp_trust_plane"],"legacy_protocol_identifiers":{"mcp_server_name":"Agent Middleware MCP Trust Plane"},"supersedes":["product_wedge","product_loop"],"scope":{"transaction_state_machine":"configured_upstream_mcp_tool_only","local_and_dogfood_tools":"not_covered_by_dispatch_uncertainty_semantics"},"semantics":["logical_action_identity","bounded_authority_consumption","at_most_one_gateway_dispatch_and_debit","delivery_uncertain_no_automatic_redispatch","linked_gateway_evidence","authoritative_external_reconciliation_required"],"canonical_loop":["logical_action_identity","authorize","reserve_configured_allowance","debit","claim_gateway_dispatch","confirmed_outcome_or_delivery_uncertain","linked_receipt_and_audit","authoritative_external_reconciliation_required"],"claim_boundary":"gateway_state_machine_not_distributed_acid_or_downstream_effect_proof"},"product_wedge":"governed_mcp_trust_plane","product_loop":["discover","authenticate","authorize","invoke","meter","receipt","audit","govern"],"bootstrap_sequence":["/.well-known/agent.json","/llms.txt","/mcp/tools.json","/openapi.json"],"simulation_and_dependency_truth":"/health/dependencies","proof_surfaces_enabled":false,"human_observability":{"human_dashboard_url":"/dashboard","interactive_docs_url":"/docs","redoc_url":"/redoc","note":"The public /dashboard is a status and evidence index. Authenticated tenant inspection remains API-only."}},"description":"Transaction-integrity boundary for consequential autonomous actions on the configured upstream-MCP path: one logical action binds scoped authority and configured consumption to at most one gateway dispatch and debit, records delivery_uncertain instead of automatically redispatching, and links gateway evidence for required external reconciliation.","surface_boundaries":{"core_trust":["audit","billing","permits","receipts","evidence","mcp","api_keys","signing_keys","discover","policies"],"dormant_trust":["auth_jwt","kyc","planner","billing_expansion"],"proof_surface":[],"proof_surfaces_mounted":false},"services":{"agent_billing":{"base_path":"/v1/billing","description":"Two-tier wallet system (sponsor funds agent) with ledger-backed per-action metering.","endpoints":["POST /v1/billing/wallets/sponsor","POST /v1/billing/wallets/agent","GET /v1/billing/wallets/{wallet_id}","GET /v1/billing/wallets","GET /v1/billing/ledger/{wallet_id}","POST /v1/billing/charge","GET /v1/billing/pricing"]},"mcp_server":{"base_path":"/mcp","description":"Model Context Protocol (MCP) gateway for governed tool discovery and execution (permit → meter → dispatch → receipt).","endpoints":["GET /mcp/tools.json","GET /.well-known/mcp/tools.json","POST /mcp/messages","GET /mcp/tools","GET /mcp/tools/{service_id}","POST /mcp/tools/{service_id}/invoke"]}},"auth":{"method":"api_key","header":"X-API-Key","description":"Pass your API key in the X-API-Key header on every request."},"rate_limits":{"requests_per_minute":120,"headers":["X-RateLimit-Limit","X-RateLimit-Remaining","X-RateLimit-Reset"]},"docs":{"openapi":"/openapi.json","interactive":"/docs","redoc":"/redoc","llm_txt":"/llm.txt","llms_txt":"/llms.txt","agent_manifest":"/.well-known/agent.json","capability_index":"/v1/discover","dependency_truth":"/health/dependencies"}}