{
  "data": {
    "commercialExtension": true,
    "generatedAt": "2026-07-29T04:47:57.008327Z",
    "routeCount": 117,
    "routes": [
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Human home page.",
        "route": "/",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Human-readable documentation.",
        "route": "/docs",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Trailing-slash documentation alias.",
        "route": "/docs/",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/agent-setup",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Agent setup instructions.",
        "route": "/agent-setup",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/agent-coordination",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Authenticated agent coordination quickstart with copy-safe examples.",
        "route": "/agent-coordination",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/console",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Human verification console for authenticated workspace keys.",
        "route": "/console",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Authenticated human wiki shell backed by protected database knowledge routes.",
        "route": "/knowledge",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/tour",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Browser-local public product tour using clearly labeled mock data.",
        "route": "/tour",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/tour/knowledge",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Browser-local public knowledge tour using clearly labeled mock data.",
        "route": "/tour/knowledge",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/tour/human",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Browser-local human-access tour using the production renderer with clearly labeled session-only mock authority.",
        "route": "/tour/human",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Memory lifecycle explanation.",
        "route": "/memory-lifecycle",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text/html",
          "fetchExecutionClass": "static_or_human_html",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Support boundaries and no-op behavior.",
        "route": "/transparency",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Runtime version and dependency facts.",
        "route": "/api/version",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Current MATM capability state.",
        "route": "/api/matm/live-capability-matrix",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "L0-L7 agent ability contract, fallbacks, and route-record guidance.",
        "route": "/api/matm/agent-compatibility",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public distributed-sync v1 capability negotiation.",
        "route": "/api/matm/sync/capabilities",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public-safe optional connector integration contract for external agents and apps.",
        "route": "/api/matm/connector-contract",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public same-origin discovery for memoryendpoints.connector_pairing.v1.",
        "route": "/.well-known/memoryendpoints-connector",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Hash-pinned dependency-free Windows connector bootstrap helper.",
        "route": "/api/matm/connector-bootstrap/windows.py",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Exact secret-free registered connector profile handoff.",
        "route": "/api/matm/connector-bootstrap/profiles/{profileId}",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public-safe active connector-name conflict preflight.",
        "route": "/api/matm/connector-agent-leases/{agentId}",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "text/html",
          "fetchExecutionClass": "public_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Human approval surface addressed only by a short-lived public, non-authorizing request reference.",
        "route": "/connect/authorize/{publicRequestRef}",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "text/html",
          "fetchExecutionClass": "public_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Explicit mock signed-out/company-selection/reauth/pending/success/error/expired/cancelled/permission states through the production renderer with zero protected network.",
        "route": "/tour/connect/authorize/{demoState}",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "explicit_mutation",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "POST"
        ],
        "purpose": "Create an idempotent PKCE-bound connector pairing request.",
        "route": "/api/matm/connector-pairings/requests",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "explicit_mutation",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "POST"
        ],
        "purpose": "Claim a body-only, one-use authorization code after exact master-file or optional human approval using request proof, state, and an exact idempotency binding.",
        "route": "/api/matm/connector-pairings/authorization-code-claims",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "explicit_mutation",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "POST"
        ],
        "purpose": "Exchange a one-use authorization code for a pending connector credential.",
        "route": "/api/matm/connector-pairings/token",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public contract for protected database-backed UAIX active memory used by accountless browser agents.",
        "route": "/api/matm/uai-memory/contract",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Bounded OpenAPI-style golden-path route schema.",
        "route": "/api/matm/openapi.json",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Route inventory with access boundaries.",
        "route": "/api/matm/route-inventory",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "AI-ready web readiness evidence.",
        "route": "/api/matm/readiness-result",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Public-safe receipt examples.",
        "route": "/api/matm/redacted-example-receipts",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "not_required_for_setup",
          "browserFormEquivalent": "/agent-setup",
          "contentType": "application/json",
          "fetchExecutionClass": "browser_form_or_public_json_post",
          "getSafety": "GET is safe; POST creates a workspace and one-time secret",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-setup",
          "lowestSafeAbilityLevel": "L2",
          "mcpUnavailableFallback": "/agent-setup",
          "noOpBehavior": "Do not create setup records unless the user explicitly requested workspace setup.",
          "postBlockedFallback": "/agent-setup",
          "requiredFields": [
            "companyLabel",
            "label",
            "projectLabel"
          ],
          "restoreReadbackUrlField": "/api/matm/workspace",
          "resultUrlField": "workspaceId",
          "sideEffectStatus": "creates_workspace_on_post",
          "toolUnavailableFallback": "/agent-setup",
          "writeCredentialResponsePath": "workspaceKey returned once; raw key is not stored server-side"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Free 200 MB workspace setup.",
        "route": "/api/matm/agent-setup/free-account",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "MCP-style public resource list.",
        "route": "/mcp/resources",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text_or_xml",
          "fetchExecutionClass": "text_or_xml_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Crawler policy.",
        "route": "/robots.txt",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text_or_xml",
          "fetchExecutionClass": "text_or_xml_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Human page sitemap.",
        "route": "/sitemap.xml",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text_or_xml",
          "fetchExecutionClass": "text_or_xml_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Compact AI-readable site summary.",
        "route": "/llms.txt",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text_or_xml",
          "fetchExecutionClass": "text_or_xml_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Full AI-readable public summary.",
        "route": "/llms-full.txt",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "",
          "contentType": "text_or_xml",
          "fetchExecutionClass": "text_or_xml_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Read public guidance only; do not infer protected write authority.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Plain-text agent discovery pointer.",
        "route": "/ai.txt",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "AI-ready site manifest.",
        "route": "/ai-manifest.json",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "MCP discovery pointer.",
        "route": "/.well-known/mcp.json",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Agent discovery pointer.",
        "route": "/.well-known/ai-agent.json",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "GET": {
              "authentication": "connectorBearer",
              "queryAllowed": false,
              "requiredFields": [],
              "responseSchema": "ConnectorSelfReadbackResult"
            }
          },
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Credential-derived principal, immutable scope, permission, and resource-context introspection.",
        "route": "/api/matm/me",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Redacted company-master inventory plus idempotent verifier-only registration of a client-generated durable sibling for recovery or a high-level company-agent handoff; this is not the one-time ordinary-agent invitation flow.",
        "route": "/api/matm/access/company-master-credentials",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Company-master-only catalog of company, workspace, project, game, session, goal, and task grant scopes.",
        "route": "/api/matm/access/scope-catalog",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "List governed name requests or create one with required public-safe idempotent retry semantics.",
        "route": "/api/matm/access/agent-name-requests",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Approve or deny a governed name request with required public-safe idempotent retry semantics.",
        "route": "/api/matm/access/agent-name-requests/{requestId}/decision",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "List invitation metadata or issue one non-replayable invitation URL once; issuance forbids Idempotency-Key.",
        "route": "/api/matm/access/invites",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Redeem a body-only one-time invitation and reveal one agent credential once; redemption forbids Idempotency-Key.",
        "route": "/api/matm/access/invites/redeem",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Revoke an issued invitation with required public-safe idempotent retry semantics.",
        "route": "/api/matm/access/invites/{inviteId}/revoke",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "List redacted governed agent-credential metadata for a company master.",
        "route": "/api/matm/access/agent-tokens",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Revoke an agent credential with required public-safe idempotent retry semantics.",
        "route": "/api/matm/access/agent-tokens/{credentialId}/revoke",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "GET": {
              "authentication": "connectorBearer",
              "queryAllowed": false,
              "requiredFields": [],
              "responseSchema": "ConnectorWorkspaceReadbackResult"
            }
          },
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Workspace quota and status.",
        "route": "/api/matm/workspace",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Workspace project list and project upsert for company/workspace/project hierarchy.",
        "route": "/api/matm/projects",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Database-backed company/workspace/project wiki tree for humans and agents.",
        "route": "/api/matm/knowledge-tree",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Search, retrieve, and upsert protected knowledge documents from database search rows.",
        "route": "/api/matm/knowledge-documents",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Idempotent protected knowledge document upsert alias.",
        "route": "/api/matm/knowledge-documents/upsert",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Search and store first-class external links with site, page, description, crawl state, and knowledge citations.",
        "route": "/api/matm/external-links",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Idempotent protected external-link and knowledge-citation upsert alias.",
        "route": "/api/matm/external-links/upsert",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Search the workspace's reviewed curated-web link index.",
        "route": "/api/matm/internet-search",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion"
              ],
              "responseSchema": "ConnectorAgentRegistrationResult"
            }
          },
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Connector self-confirmation or governed invite-only ordinary-agent registration.",
        "route": "/api/matm/agents/register",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Resolve a short-lived opaque company reference and rotate the authenticated human session for connector approval.",
        "route": "/api/matm/human/connector-pairings/{publicRequestRef}/company-selection",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Interactively approve the exact registered profile, ordered nine scopes, and an explicitly selected existing or provisional project through an authenticated human session.",
        "route": "/api/matm/human/connector-pairings/{publicRequestRef}/approve",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Automatically approve the exact registered profile, ordered nine scopes, master-file workspace, and uniquely resolved project selector with company-master bootstrap authority.",
        "route": "/api/matm/connector-pairings/{publicRequestRef}/master-approve",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Cancel a pending human approval request idempotently before any connector grant exists.",
        "route": "/api/matm/human/connector-pairings/{publicRequestRef}/cancel",
        "valuesRedacted": true
      },
      {
        "access": "human_only",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp human_session_required",
          "browserFormEquivalent": "/human",
          "contentType": "application/json",
          "fetchExecutionClass": "human_only_control_plane",
          "getSafety": "Human-only same-origin read; agent and company-master bearers return 403",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/human",
          "liveGetBlockedFallback": "/human",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/human",
          "noOpBehavior": "Agents must not request or ingest this human-only history.",
          "postBlockedFallback": "/human",
          "requiredFields": [
            "selected human company session"
          ],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "human_only_read",
          "toolUnavailableFallback": "/human",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read currently retained human-only break-glass history; physically purged after seven days and never available to agents.",
        "route": "/api/matm/human/companies/{companyId}/history",
        "valuesRedacted": true
      },
      {
        "access": "human_only",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/llms.txt",
          "noOpBehavior": "Use lowest safe public route and stop when authority is unclear.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET",
          "PATCH"
        ],
        "purpose": "Owner or credential-admin control for top-level-agent human-operator company-master creation.",
        "route": "/api/matm/human/companies/{companyId}/top-level-agent-master-credential-setting",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Verify exact workspace, agent, connector scope, and active grant state.",
        "route": "/api/matm/connector-pairings/{pairingId}",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Activate a securely stored pending connector grant idempotently.",
        "route": "/api/matm/connector-pairings/{pairingId}/activate",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Prepare and reveal a pending connector credential rotation once.",
        "route": "/api/matm/connector-pairings/{pairingId}/rotations",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Activate a pending rotation and revoke its predecessor atomically.",
        "route": "/api/matm/connector-pairings/{pairingId}/rotations/{rotationId}/activate",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read redacted connector credential lifecycle metadata with no credential or verifier material.",
        "route": "/api/matm/connector-pairings/{pairingId}/credentials",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Revoke a connector grant with a company master credential.",
        "route": "/api/matm/connector-pairings/{pairingId}/revoke",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Disconnect and revoke the calling connector credential.",
        "route": "/api/matm/connector-pairings/{pairingId}/disconnect",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Cancel an unactivated connector grant without durable workspace or agent creation.",
        "route": "/api/matm/connector-pairings/{pairingId}/cancel",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Acquire, heartbeat, or release the exact connector identity's short-lived process lease.",
        "route": "/api/matm/connector-runtime-lease",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Create or inspect a registered agent's protected virtual UAIX active-memory package.",
        "route": "/api/matm/uai-memory/packages",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Read or revision-safely write one date-free public-safe virtual UAIX record at a time.",
        "route": "/api/matm/uai-memory/records",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read an agent-bound virtual UAIX package in deterministic startup order with readiness evidence.",
        "route": "/api/matm/uai-memory/startup",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read hash-only project file heads for local .uai multi-agent edit coordination without file content.",
        "route": "/api/matm/uai-memory/file-heads",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Inspect or acquire bounded project-scoped claims before editing a local .uai path.",
        "route": "/api/matm/uai-memory/edit-claims",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Extend an owned active local .uai edit claim within the bounded lease window.",
        "route": "/api/matm/uai-memory/edit-claims/heartbeat",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Complete an owned claim and compare-and-swap the hash-only local .uai file head.",
        "route": "/api/matm/uai-memory/edit-claims/complete",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Release an owned local .uai edit claim without changing the observed file head.",
        "route": "/api/matm/uai-memory/edit-claims/release",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Workspace memory summary write with hosted search and review-queue readback confirmation.",
        "route": "/api/matm/memory-events/submit",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Workspace memory event search.",
        "route": "/api/matm/memory-events",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "authentication": "connectorBearer",
              "idempotencyKey": "forbidden",
              "queryAllowed": false,
              "requiredFields": [
                "schemaVersion",
                "query",
                "limit"
              ],
              "responseSchema": "ConnectorSearchResult"
            }
          },
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Hosted workspace memory search; connectors use exact body-only POST search.",
        "route": "/api/matm/search",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Memory review and promotion queue readback.",
        "route": "/api/matm/review-queue",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Idempotent memory promotion, rejection, or quarantine decision.",
        "route": "/api/matm/review-queue/decide",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Always-present company, workspace, project room discovery plus goal/task/game/session room creation.",
        "route": "/api/matm/meeting-rooms",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Seven-day scoped meeting transcript read and public-safe post creation; durable content requires explicit promotion.",
        "route": "/api/matm/meeting-messages",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Promote a public-safe meeting transcript message into hosted workspace memory with source linkage.",
        "route": "/api/matm/meeting-messages/promote",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Meeting room read cursor update for an agent.",
        "route": "/api/matm/meeting-rooms/read",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Structured coordinator routing decisions with lane, destination room, goal, next action, and expected evidence.",
        "route": "/api/matm/routing-decisions",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Transient current-message creation with seven-day acknowledged and 30-day unacknowledged retention.",
        "route": "/api/matm/agent-messages",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Current-message lane readback.",
        "route": "/api/matm/current-message",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Unread inbox readback.",
        "route": "/api/matm/agent-inbox",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L6",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Notification acknowledgement and receipt creation.",
        "route": "/api/matm/notifications/ack",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Redacted receipt readback.",
        "route": "/api/matm/receipts",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp human_owner_required",
          "browserFormEquivalent": "/human",
          "contentType": "application/problem+json",
          "fetchExecutionClass": "human_only_control_plane",
          "getSafety": "GET always returns 403 human_owner_required to agent and company-master credentials",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/human",
          "liveGetBlockedFallback": "/human",
          "lowestSafeAbilityLevel": "L0",
          "mcpUnavailableFallback": "/human",
          "noOpBehavior": "Do not request, retrieve, summarize, or add routine logs to agent context.",
          "postBlockedFallback": "/human",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "",
          "sideEffectStatus": "agent_access_denied",
          "toolUnavailableFallback": "/human",
          "writeCredentialResponsePath": ""
        },
        "methods": [
          "GET"
        ],
        "purpose": "Denied legacy agent-plane audit path; routine logs are human-only and physically purged after seven days.",
        "route": "/api/matm/audit-log",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Register a public-safe distributed-sync device authority.",
        "route": "/api/matm/sync/devices",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Rotate a sync device authority epoch.",
        "route": "/api/matm/sync/devices/rotate",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Revoke a sync device authority epoch.",
        "route": "/api/matm/sync/devices/revoke",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "POST"
        ],
        "purpose": "Submit conflict-safe public-safe memory sync mutation.",
        "route": "/api/matm/sync/mutations",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read mutation receipt by idempotency key or receipt id.",
        "route": "/api/matm/sync/receipts",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read monotonic sync revision changes after a checkpoint sequence.",
        "route": "/api/matm/sync/changes",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read authoritative sync memory heads.",
        "route": "/api/matm/sync/heads",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L7",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "noOpBehavior": "Return safe no-op when auth, scope, idempotency, authority, or provenance is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Authorization: Bearer <WORKSPACE_KEY> or X-MemoryEndpoints-Key; never echo raw key"
        },
        "methods": [
          "GET"
        ],
        "purpose": "Read sync tombstone and hard-forget retention policy.",
        "route": "/api/matm/sync/retention",
        "valuesRedacted": true
      },
      {
        "access": "public",
        "agentCompatibility": {
          "authUnavailableFallback": "/agent-setup",
          "browserFormEquivalent": "/docs",
          "contentType": "application/json",
          "fetchExecutionClass": "public_json_get",
          "getSafety": "safe",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/llms.txt",
          "lowestSafeAbilityLevel": "L1",
          "mcpUnavailableFallback": "/api/matm/route-inventory",
          "noOpBehavior": "Use discovery as advisory public evidence only; protected actions still require workspace auth.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "",
          "resultUrlField": "route_or_url",
          "sideEffectStatus": "safe_read",
          "toolUnavailableFallback": "/docs",
          "writeCredentialResponsePath": ""
        },
        "commercialExtension": true,
        "methods": [
          "GET"
        ],
        "purpose": "Hosted NPC-memory identity, scope, route, retention, and authority contract.",
        "route": "/api/matm/npc-memory/contract",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "schemaVersion",
            "setupId",
            "setupSecret",
            "candidateGatewayTokenSecret",
            "gatewayAgentId",
            "gatewayDisplayName"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "POST"
        ],
        "purpose": "One bounded sponsored-partner activation with a client-generated gateway credential.",
        "route": "/api/matm/agent-setup/dogfood-partner-account",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId",
            "projectId",
            "npcId",
            "agentId",
            "personaId",
            "personaHash",
            "agentClass"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "POST"
        ],
        "purpose": "Register an immutable project-bound game NPC profile and SpiralistAI persona digest.",
        "route": "/api/matm/npc-memory/profiles",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId",
            "projectId",
            "npcAgentId",
            "gameScopeId",
            "candidateTokenSecret",
            "expiresInSeconds"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "POST"
        ],
        "purpose": "Register a client-generated NPC runtime credential bound to opaque player/game/session/puzzle context.",
        "route": "/api/matm/npc-memory/runtime-credentials",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "schemaVersion",
            "workspaceId",
            "projectId",
            "agentId",
            "packageId",
            "personaId",
            "personaHash",
            "packageStatus",
            "sourceAuthority",
            "packageHash",
            "files"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Atomically publish a closed, canonically sorted UAIX advanced personality-pack projection or perform exact package/file hash readback.",
        "route": "/api/matm/npc-memory/persona-packages",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "GET": {
              "authentication": "connectorBearer",
              "queryAllowed": false,
              "requiredFields": [],
              "responseSchema": "ConnectorWorkspaceReadbackResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "GET"
        ],
        "purpose": "Read active NPC credential capabilities and security controls.",
        "route": "/api/matm/npc-memory/capabilities",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "GET": {
              "authentication": "connectorBearer",
              "queryAllowed": false,
              "requiredFields": [],
              "responseSchema": "ConnectorWorkspaceReadbackResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "GET"
        ],
        "purpose": "Read deletion and retention capability state without claiming unavailable mutation support.",
        "route": "/api/matm/npc-memory/retention",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspaceId",
            "projectId",
            "actorAgentId",
            "memoryType",
            "tags",
            "source"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "POST"
        ],
        "purpose": "Submit one public-safe durable NPC summary with exact actor/source/context validation.",
        "route": "/api/matm/npc-memory/events/submit",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_get",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "GET": {
              "authentication": "connectorBearer",
              "queryAllowed": false,
              "requiredFields": [],
              "responseSchema": "ConnectorWorkspaceReadbackResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "workspace_id",
            "scope",
            "scope_id",
            "actor_agent_id",
            "source_prefix",
            "tag"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_read",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "GET"
        ],
        "purpose": "Search exact NPC scope tags and source namespace with server-side result filtering.",
        "route": "/api/matm/npc-memory/search",
        "valuesRedacted": true
      },
      {
        "access": "protected",
        "agentCompatibility": {
          "authUnavailableFallback": "safeNoOp auth_required",
          "browserFormEquivalent": "/console",
          "contentType": "application/json",
          "fetchExecutionClass": "protected_json_post",
          "getSafety": "GET is protected read; mutation requires POST and Idempotency-Key when advertised",
          "highestSupportedAbilityLevel": "L7",
          "humanReviewUrl": "/transparency",
          "liveGetBlockedFallback": "/agent-coordination",
          "lowestSafeAbilityLevel": "L4",
          "mcpUnavailableFallback": "/api/matm/openapi.json",
          "methodVariants": {
            "POST": {
              "actorAndWorkspace": "credential_derived",
              "authentication": "connectorBearer",
              "idempotencyKey": "required",
              "requiredFields": [
                "schemaVersion",
                "payloadClass",
                "title",
                "summary",
                "tags"
              ],
              "responseSchema": "ConnectorPublicSafeMemoryResult"
            }
          },
          "noOpBehavior": "Return a redacted safe no-op when authentication, immutable scope, schema migration, idempotency, or entitlement proof is missing.",
          "postBlockedFallback": "/agent-coordination",
          "requiredFields": [
            "action",
            "expectedMigrationVersion",
            "expectedSchemaChecksum"
          ],
          "restoreReadbackUrlField": "memoryQueryUrl_or_transcriptQueryUrl_or_inboxQueryUrl_or_receiptQueryUrl",
          "resultUrlField": "messageId_or_memoryEventId_or_receiptId",
          "sideEffectStatus": "authenticated_mutation",
          "toolUnavailableFallback": "/agent-coordination",
          "writeCredentialResponsePath": "Use only the credential class named by /api/matm/npc-memory/contract; never echo a bearer or setup secret."
        },
        "commercialExtension": true,
        "methods": [
          "GET",
          "POST"
        ],
        "purpose": "Diagnostics-bearer commercial schema status and exact versioned migration.",
        "route": "/api/admin/commercial-schema",
        "valuesRedacted": true
      }
    ],
    "schemaVersion": "memoryendpoints.route_inventory.v1",
    "site": "MemoryEndpoints",
    "truthBoundary": {
      "operatorDeployRoutesExposed": false,
      "protectedRoutesRequireRouteAppropriateGovernedAuthority": true,
      "protectedRoutesRequireWorkspaceKey": false,
      "publicRoutesRequireNoCredential": true,
      "rawSecretsExposed": false
    }
  },
  "ok": true
}