Submits proposals, issues already-ratified grants, and reads grants. It cannot manufacture human authority.
PUBLIC TECHNICAL DOCUMENTATION
Integrate the authority boundary without surrendering the target runtime.
MCPaios exposes machine-facing contracts for proposal, exact grant issuance, current verification, completion, receipt retrieval, reconstruction, and reporting. Protected targets retain their credentials and execute locally.
DOCS / AUTHORITY-API-V1 / MCP2-CORESERVICE ROLES
Separate principals for separate authority jobs.
Verifies an exact request and completes an existing ALLOW receipt. It cannot grant or revoke authority.
Reads receipts, reconstruction, reports, and bounded authority evidence. It cannot mutate the authority record.
AUTHENTICATION BOUNDARY
Every protected machine route is tenant-bound and bearer-authenticated.
Authorization: Bearer <mcpaios-service-token>
X-MCPaios-Tenant: <tenant-id>
Content-Type: application/jsonThe public /api/v1/protocol declaration does not require a bearer credential. The plaintext bearer is hashed in the server runtime and is not persisted by the HTTP layer. The service gateway enforces tenant, role, status, and expiry.
AUTHORITY API V1
Current Authority API routes.
POST/api/v1/proposalsSubmit a bounded machine proposal.
POST/api/v1/grantsIssue the exact already-ratified grant.
GET/api/v1/grants/{grantId}Read a bounded grant.
POST/api/v1/multi-model/attempts/claimClaim one exact multi-model attempt before verification.
POST/api/v1/verifyAtomically verify current authority and commit the decision receipt.
POST/api/v1/receipts/{receiptId}/completeBind target-reported completion to an ALLOW receipt.
GET/api/v1/receipts/{receiptId}Read canonical decision evidence.
GET/api/v1/reconstruct/{receiptId}Reconstruct the authority and execution path.
GET/api/v1/reportRead tenant authority and ledger status.
FENCE VERIFICATION
Resolve current authority immediately before the side effect.
Conceptual pseudocode, not an SDK invocation. Reject transport errors and malformed responses before local execution. The real response uses decision.decision, receipted, and receipt_id. Multi-model legs must first claim their exact attempt and use the declared mcpaios.multi_model_leg.v1 extension; a retry requires a new run ID.
const decision = await mcpaios.verify({
...exactVerificationRequest
});
if (decision.decision?.decision !== "ALLOW" ||
decision.receipted !== true || !decision.receipt_id) {
return denyWithoutExecution(decision);
}
const outcome = await target.executeLocally();
await mcpaios.complete(decision.receipt_id, outcome);
// If completion cannot be confirmed, reconcile before retrying the action.EXECUTION BOUNDARY
There is deliberately no hosted `/execute` route.
A protected target remains responsible for execution after it receives a receipted ALLOW. MCPaios governs authority and evidence; it does not take possession of target credentials or become a generic remote execution service.
Keep the tool connection, current authority decision, and protected side effect as inspectable, independently governed steps.
OPERATE THE BOUNDARY
The documentation is public. Authority operations remain protected.
Sign in to provision machine identities, submit governed work, inspect grants, and review evidence.