Extole Agentic Access
Extole exposes 743 API operations that an AI agent could call, of which 400 are state-changing ‘acting’ operations. This is a recommended x-agentic-access execution contract — the scope, audience, consequence tier, short-lived token constraints, and escalation each action should carry before it is handed to an autonomous agent.
By consequence: 343 read, 238 write, 11 physical, and 151 safety-critical.
151 operations are classed safety-critical and should require human-in-the-loop approval at runtime.
Contracts are classified heuristically from the provider’s OpenAPI and refresh on every APIs.io network build; audience is bound per deployment. The model follows Curity’s Access Intelligence (apidays Munich 2026). Browse every provider’s agent contracts at agentic-access.apis.io.
By consequence
Highest-consequence actions
The physical and safety-critical operations an agent could invoke — the ones that most warrant scoped tokens, tight TTLs, and escalation. Full per-operation contracts are in the source below.
| Method | Path | Consequence | Human-in-loop |
|---|---|---|---|
| DELETE | /v1/component-grants/{grantId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/approves | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/approves/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/approves/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/cancel-rewards | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/cancel-rewards/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/cancel-rewards/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/create-memberships | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/create-memberships/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/create-memberships/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/creatives | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/creatives/{actionId} | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/creatives/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/creatives/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/data-intelligences | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/data-intelligences/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/data-intelligences/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/declines | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/declines/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/declines/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/displays | safety-critical | required |
| PUT | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/displays/{actionId} | safety-critical | required |
| DELETE | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/displays/{actionId} | safety-critical | required |
| POST | /v2/campaigns/{campaignId}{version}/controllers/{controllerId}/actions/earn-rewards | safety-critical | required |
Source
Agentic Access
generated: '2026-07-19'
method: generated
source: openapi/extole-integration-consumer-to-extole-openapi.json, openapi/extole-integration-server-to-extole-openapi.json,
openapi/extole-management-expert-openapi.json, openapi/extole-management-openapi.json
description: Recommended x-agentic-access execution contracts, classified heuristically from
the OpenAPI. A governance starting point for exposing this API to AI agents — review and bind
audience per deployment. See research/curity/agentic-governance/.
summary:
operations: 743
by_action_class:
connected: 343
acting: 400
by_consequence:
read: 343
write: 238
physical: 11
safety-critical: 151
human_in_the_loop_required: 151
operations:
- path: /api/v4/events/share/status/{pollingId}
method: get
operationId: shareEventStatus
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me
method: get
operationId: getMyProfile
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me
method: post
operationId: updateMyProfile
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/advocates
method: get
operationId: getAdvocateRelationships
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/assets
method: get
operationId: listAssets
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/assets
method: post
operationId: createAsset
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/assets/download
method: get
operationId: downloadAssetByName
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/assets/{assetId}
method: get
operationId: readAsset
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/assets/{assetId}
method: delete
operationId: deleteAsset
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/assets/{assetId}/download
method: get
operationId: downloadAssetById
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/audience-memberships
method: get
operationId: getAudienceMemberships
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/email/status/{polling_id}
method: get
operationId: getSendEmailStatus
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/friends
method: get
operationId: getFriends
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/journeys
method: get
operationId: getJourneys
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/parameters
method: get
operationId: getPersonProfileParameters
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/parameters
method: post
operationId: editPersonProfileParameters
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/referrals-from-me
method: get
operationId: getReferralsFromMe
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/referrals-to-me
method: get
operationId: getReferralsToMe
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/rewards/status
method: get
operationId: getMyRewardStatus
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/send-verification-email/status/{pollingId}
method: get
operationId: verificationEmailStatus
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/shareables
method: get
operationId: getMeShareables
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/shareables
method: post
operationId: createMeShareableV4
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/shareables/status/{polling_id}
method: get
operationId: getMeShareableStatusV4
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/shareables/{shareable_id}
method: get
operationId: getMeShareable
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/shareables/{shareable_id}
method: put
operationId: edit
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/shares
method: get
operationId: getShares
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/shares/{shareId}
method: get
operationId: getShare
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/me/steps
method: get
operationId: getSteps
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/person/profile-picture-url/{personId}
method: get
operationId: getPersonProfilePictureUrlV4
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/person/{personId}
method: get
operationId: getPublicPersonV4
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/persons/{personId}/assets
method: get
operationId: listPersonAssets
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/persons/{personId}/assets/download
method: get
operationId: downloadPersonAssetByName
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/persons/{personId}/assets/{assetId}
method: get
operationId: getPersonAsset
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/persons/{personId}/assets/{assetId}/download
method: get
operationId: downloadPersonAsset
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/shareable
method: get
operationId: getShareablesV4
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/shareable
method: post
operationId: createShareable
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/shareable/status/{polling_id}
method: get
operationId: getStatus_3
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/shareable/{shareable_id}
method: get
operationId: getShareableV4
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/shares
method: get
operationId: getPublicShares
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/shares/{share_id}
method: get
operationId: getPublicShare
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v5/custom/share/status/{pollingId}
method: get
operationId: customShareStatus
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v5/token
method: get
operationId: getConsumerToken
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v5/token
method: post
operationId: createConsumerToken
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v5/token
method: delete
operationId: deleteConsumerToken
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/me/shareables
method: get
operationId: getShareables_2
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v6/me/shareables
method: post
operationId: createMeShareable_2
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/me/shareables/{code}
method: get
operationId: getShareable_3
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /events/{event_name}
method: get
operationId: fetchConsumerEventByName
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /api/v4/events/share
method: post
operationId: shareEvent
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/email
method: post
operationId: sendEmail
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/send-verification-email
method: post
operationId: sendVerificationEmail
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v5/custom/share
method: post
operationId: customShare
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v5/email/share/batch
method: post
operationId: batchEmailShare
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/me/shareables/get-create-or-update
method: post
operationId: getCreateOrUpdate
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/me/shareables/get-or-create
method: post
operationId: getOrCreate
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/zones
method: post
operationId: renderZone
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v6/zones/{event_name}
method: post
operationId: renderZoneByEventName
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /zones
method: post
operationId: renderZoneWeb
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /zones/{zone_name}
method: post
operationId: renderZoneByNameWeb
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /api/v4/me/parameters/{parameter_name}
method: put
operationId: putPersonProfileParameter
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v2/rewards
method: get
operationId: listRewards
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/state_summary
method: get
operationId: getRewardStateSummary
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}
method: get
operationId: getReward
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}
method: put
operationId: updateReward
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v2/rewards/{reward_id}/cancels
method: get
operationId: getRewardCancels
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/fails
method: get
operationId: getRewardFails
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/fulfillments
method: get
operationId: getRewardFulfillments
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/history
method: get
operationId: getRewardStateHistory
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/redeems
method: get
operationId: getRewardRedeems
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/revokes
method: get
operationId: getRewardRevokes
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v2/rewards/{reward_id}/sends
method: get
operationId: getRewardSends
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v4/tokens
method: get
operationId: getCurrentClientAccessToken
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v4/tokens
method: post
operationId: createClientAccessToken
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v4/tokens/{token}
method: get
operationId: getClientAccessTokenByValue
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v4/tokens/{token}
method: delete
operationId: deleteClientAccessToken
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons
method: get
operationId: searchPersons
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons
method: post
operationId: createPerson_2
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/partner-keys
method: get
operationId: getPartnerKeys_2
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}
method: get
operationId: getPerson_3
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}
method: put
operationId: updatePerson_2
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/block
method: get
operationId: getPersonBlock
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/block
method: put
operationId: updatePersonBlock
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/data
method: get
operationId: listPersonData
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/data
method: post
operationId: createPersonData
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/data/{name}
method: get
operationId: getPersonData
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/data/{name}
method: put
operationId: updatePersonData
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/data/{name}
method: delete
operationId: deletePersonData
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/identity-history
method: get
operationId: getIdentityHistory
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/journeys
method: get
operationId: listPersonJourneys
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/journeys/{journey_id}
method: get
operationId: getPersonJourney
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/locations
method: get
operationId: listPersonLocations
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/memberships
method: get
operationId: listPersonMemberships
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/memberships
method: post
operationId: createPersonMembership
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/relationships
method: get
operationId: listPersonRelationships
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/rewards
method: get
operationId: listPersonRewards
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/rewards/{reward_id}
method: get
operationId: getPersonReward
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/shareables
method: get
operationId: listPersonShareables
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/shareables
method: post
operationId: createPersonShareable
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/shareables/{code}
method: get
operationId: getPersonShareable
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/shareables/{code}
method: put
operationId: updatePersonShareable
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v5/persons/{person_id}/shares
method: get
operationId: listPersonShares
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/shares/{share_id}
method: get
operationId: getPersonShare
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/persons/{person_id}/steps
method: get
operationId: listPersonSteps
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/zones/{zone_name}
method: get
operationId: fetchZone
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v5/zones/{zone_name}
method: post
operationId: renderZoneV5
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/batches
method: get
operationId: listBatches
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/batches
method: post
operationId: createBatch
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/batches/{batchId}
method: get
operationId: getBatch
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/batches/{batchId}
method: put
operationId: updateBatch
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/batches/{batchId}
method: delete
operationId: deleteBatch
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/files
method: get
operationId: listFiles
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/files
method: post
operationId: createFile
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/files/{fileId}
method: get
operationId: getFile
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/files/{fileId}
method: put
operationId: updateFile
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/files/{fileId}
method: delete
operationId: deleteFile
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/files/{fileId}/download
method: get
operationId: downloadFile
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/sftp-destinations
method: get
operationId: listSftpDestinations
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/sftp-destinations
method: post
operationId: createSftpDestination
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v6/sftp-destinations/{sftpDestinationId}
method: get
operationId: getSftpDestination
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v6/sftp-destinations/{sftpDestinationId}
method: put
operationId: updateSftpDestination
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high
# --- truncated at 32 KB (236 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/extole/refs/heads/main/agentic-access/extole-agentic-access.yml