docs 7C-2 feat/agent-delegation-v0-spec #1 / 1
aaronrene · 31 days ago · Jun 23, 2026 · Diff

docs(7C-2): freeze AGENT-DELEGATION-V0-SPEC wire schemas and security checklist

sha256:b60e798d72630d27bf17ec4a705329371c13312d5fd1cd39a1b9c6e33c0b4b68 sha
+63 symbols
1 changed · 968 in snapshot files
sha256:339259c647481d1182a864301a95f31827b5e8cefb6f932341044f1bcb800b0e snapshot
+63
symbols added
1
file changed
968
files in snapshot
0
dead code introduced
Semantic Changes 63 symbols
~ docs/AGENT-DELEGATION-V0-SPEC.md .md 63 symbols added
+ Agent Delegation v0 — Canonical Spec (Knowtation) section Agent Delegation v0 — Canonical Spec (Knowtation) L1–639
+ Design decisions (recorded as SD-9 and SD-10) section 0. Design decisions (recorded as SD-9 and SD-10) L74–85
+ Identity model section 1. Identity model L85–122
+ 1 Agent identity kinds section 1.1 Agent identity kinds L87–95
+ table section table L89–94
+ 2 Principal vs actor section 1.2 Principal vs actor L95–105
+ table section table L97–101
+ 3 Procedure ownership and portability (extends Flow scope) section 1.3 Procedure ownership and portability (extends Flow scope) L105–122
+ table section table L110–115
+ Seven-tier test matrix (what each tier proves — design only) section 10. Seven-tier test matrix (what each tier proves — design only) L553–571
+ table section table L559–568
+ Open decisions resolved in this spec section 11. Open decisions resolved in this spec L571–583
+ table section table L573–580
+ Acceptance (7C-2) section 12. Acceptance (7C-2) L583–619
+ Delegation chain (required reconstructability) section 2. Delegation chain (required reconstructability) L122–178
+ 1 Task integration (SD-2) section 2.1 Task integration (SD-2) L160–178
+ code[mermaid] variable variable code[mermaid] L136–159
+ code[text] variable variable code[text] L126–135
+ Wire schemas (v0, open, versioned) section 3. Wire schemas (v0, open, versioned) L178–392
+ 1 Pinned enums (v0) section 3.1 Pinned enums (v0) L183–195
+ table section table L185–194
+ 2 Pinned id formats (v0) section 3.2 Pinned id formats (v0) L195–209
+ table section table L197–205
+ agent_identity/v0 — who owns this agent instance section 3.3 knowtation.agent_identity/v0 — who owns this agent instance L209–247
+ code[jsonc] variable variable code[jsonc] L224–238
+ table@L211 section table@L211 L211–223
+ table@L239 section table@L239 L239–246
+ delegation_consent/v0 — principal explicitly permits delegation section 3.4 knowtation.delegation_consent/v0 — principal explicitly permits delegation L247–294
+ code[jsonc] variable variable code[jsonc] L265–281
+ table@L249 section table@L249 L249–264
+ table@L282 section table@L282 L282–289
+ delegation_grant/v0 — runtime authority for on-behalf-of actions section 3.5 knowtation.delegation_grant/v0 — runtime authority for on-behalf-of actions L294–345
+ code[jsonc] variable variable code[jsonc] L315–335
+ table@L296 section table@L296 L296–314
+ table@L336 section table@L336 L336–344
+ delegation_audit/v0 — pointer-safe audit entry section 3.6 knowtation.delegation_audit/v0 — pointer-safe audit entry L345–392
+ code[jsonc] variable variable code[jsonc] L364–382
+ table@L347 section table@L347 L347–363
+ table@L383 section table@L383 L383–389
+ Surfaces (triple-exposed when gate is ON — design only in 7C-2) section 4. Surfaces (triple-exposed when gate is ON — design only in 7C-2) L392–441
+ 1 Request — grant mint (delegation_grant_mint) section 4.1 Request — grant mint (delegation_grant_mint) L407–426
+ code[jsonc] variable variable code[jsonc] L409–420
+ delegation_grant_mint/v0) section 4.2 Response — mint (knowtation.delegation_grant_mint/v0) L426–441
+ code[jsonc] variable variable code[jsonc] L428–436
+ table section table L397–402
+ Separation from SD-5, SD-6, and SD-2 section 5. Separation from SD-5, SD-6, and SD-2 L441–473
+ 1 vs SD-5 (external-agent Flow access) section 5.1 vs SD-5 (external-agent Flow access) L443–457
+ table section table L445–453
+ 2 vs SD-6 (automatable execution) section 5.2 vs SD-6 (automatable execution) L457–466
+ table section table L459–465
+ 3 SD-2 (task ↔ run linkage) section 5.3 SD-2 (task ↔ run linkage) L466–473
+ Storage section 6. Storage L473–490
+ table section table L478–484
+ Posture / gating (default off) section 7. Posture / gating (default off) L490–505
+ table section table L492–499
+ Error taxonomy (opaque codes; no scope/id/secret leak) section 8. Error taxonomy (opaque codes; no scope/id/secret leak) L505–534
+ table section table L507–529
+ Security and privacy checklist (sign-off required before 7C-L1) section 9. Security and privacy checklist (sign-off required before 7C-L1) L534–553
+ table section table L536–550
+ Handoff notes (for 7C-6 — Thinking → Auto) section Handoff notes (for 7C-6 — Thinking → Auto) L629–639
+ Non-goals (7C-2) section Non-goals (7C-2) L619–629
+ Simple summary section Simple summary L32–48
+ Technical summary section Technical summary L48–74
Files Changed
+1
968 in snapshot
← Older Oldest on feat/agent-delegation-v0-spec
All commits
Newer → Latest on feat/agent-delegation-v0-spec

0 comments

No comments yet. Be the first to start the discussion.

To add a comment, use the Muse CLI: muse hub commit comment sha256:b60e798d72630d27bf17ec4a705329371c13312d5fd1cd39a1b9c6e33c0b4b68 --body "your comment"