Nuxeo · Agentic Access
Nuxeo Agentic Access
x-agentic-access
generated
Nuxeo exposes 139 API operations that an AI agent could call, of which 58 are state-changing ‘acting’ operations. This is a recommended x-agentic-access execution contract — the scope, audience, consequence tier, short-lived token constraints, and escalation each action should carry before it is handed to an autonomous agent.
By consequence: 81 read and 58 write.
Contracts are classified heuristically from the provider’s OpenAPI and refresh on every APIs.io network build; audience is bound per deployment. The model follows Curity’s Access Intelligence (apidays Munich 2026). Browse every provider’s agent contracts at agentic-access.apis.io.
Content ManagementDigital Asset ManagementEnterpriseDocumentsWorkflowsSearchOpen Source
Operations: 139
Acting: 58
Human-in-the-loop: 0
Method: generated
By consequence
read 81
write 58
Source
Agentic Access
generated: '2026-07-15'
method: generated
source: openapi/nuxeo-rest-api-openapi.yaml
description: Recommended x-agentic-access execution contracts, classified heuristically from
the OpenAPI. A governance starting point for exposing this API to AI agents — review and bind
audience per deployment. See research/curity/agentic-governance/.
summary:
operations: 139
by_action_class:
connected: 81
acting: 58
by_consequence:
read: 81
write: 58
human_in_the_loop_required: 0
operations:
- path: /id/{docId}/@acl
method: get
operationId: DocumentIdACLAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@acl
method: get
operationId: DocumentPathACLAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@annotation
method: get
operationId: DocumentIdAnnotationAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@annotation
method: post
operationId: DocumentIdAnnotationAdapterPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@annotation
method: put
operationId: DocumentIdAnnotationAdapterPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@annotation/{annotationId}
method: delete
operationId: DocumentIdAnnotationIdAdapterDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@annotation/{annotationId}
method: get
operationId: DocumentIdAnnotationIdAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@audit
method: get
operationId: DocumentIdAuditAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@audit
method: get
operationId: DocumentPathAuditAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /automation
method: get
operationId: AutomationGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /automation/{operationName}
method: get
operationId: AutomationOperationGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /automation/{operationName}
method: post
operationId: AutomationOperationPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}/@children/@op/{operationName}
method: post
operationId: DocumentPathChildrenOperationAdapterPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}/@op/{operationName}
method: post
operationId: DocumentPathOperationAdapterPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@blob/{fieldPath}
method: get
operationId: DocumentIdBlobAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@blob/{fieldPath}
method: get
operationId: DocumentPathBlobAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@bo/{adapterName}
method: get
operationId: DocumentIdBusinessObjectAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@bo/{adapterName}
method: put
operationId: DocumentIdBusinessObjectAdapterPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@bo/{adapterName}/{docName}
method: post
operationId: DocumentIdBusinessObjectAdapterPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@children/@bo/{adapterName}
method: get
operationId: DocumentIdChildrenBusinessObjectAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@bo/{adapterName}
method: get
operationId: DocumentPathBusinessObjectAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@bo/{adapterName}
method: put
operationId: DocumentPathBusinessObjectAdapterPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}/@bo/{adapterName}/{docName}
method: post
operationId: DocumentPathBusinessObjectAdapterPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}/@children/@bo/{adapterName}
method: get
operationId: DocumentPathChildrenBusinessObjectAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@children
method: get
operationId: DocumentIdChildrenAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@children
method: get
operationId: DocumentPathChildrenAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@blob/{blobXpath}/@convert
method: get
operationId: DocumentIdBlobConvertAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@convert
method: get
operationId: DocumentIdConvertAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@blob/{blobXpath}/@convert
method: get
operationId: DocumentPathBlobConvertAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@convert
method: get
operationId: DocumentPathConvertAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /directory/{directoryName}
method: get
operationId: DirectoryByNameGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /directory/{directoryName}
method: post
operationId: DirectoryByNamePost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /directory/{directoryName}/{entryId}
method: delete
operationId: DirectoryEntryDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /directory/{directoryName}/{entryId}
method: get
operationId: DirectoryEntryGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /directory/{directoryName}/{entryId}
method: put
operationId: DirectoryEntryPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /config/types
method: get
operationId: ConfigurationTypesGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /config/types/{docType}
method: get
operationId: ConfigurationTypeDocumentGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /@emptyWithDefault
method: get
operationId: EmptyWithDefaultGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@emptyWithDefault
method: get
operationId: DocumentIdEmptyWithDefaultAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@emptyWithDefault
method: get
operationId: DocumentPathEmptyWithDefaultAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /config/facets
method: get
operationId: ConfigurationFacetsGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /config/facets/{facet}
method: get
operationId: ConfigurationFacetGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /group
method: post
operationId: GroupPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /group/search
method: get
operationId: GroupSearchGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /group/{groupName}
method: delete
operationId: GroupNameDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /group/{groupName}
method: get
operationId: GroupNameGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /group/{groupName}
method: put
operationId: GroupNamePut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /group/{groupName}/@groups
method: get
operationId: GroupsAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /group/{groupName}/@users
method: get
operationId: UsersAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /group/{groupName}/user/{userName}
method: post
operationId: GroupUserPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}
method: delete
operationId: DocumentIdDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}
method: get
operationId: DocumentIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}
method: post
operationId: DocumentIdPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}
method: put
operationId: DocumentIdPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/id/{docId}
method: delete
operationId: RepoIdDocumentIdDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/id/{docId}
method: get
operationId: RepoIdDocumentIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /repo/{repoId}/id/{docId}
method: post
operationId: RepoIdDocumentIdPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/id/{docId}
method: put
operationId: RepoIdDocumentIdPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /me
method: get
operationId: MeGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /me/changepassword
method: put
operationId: MePasswordPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/client
method: get
operationId: OAuth2ClientGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/client
method: post
operationId: OAuth2ClientPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/client/{oauth2ClientId}
method: delete
operationId: OAuth2ClientIdDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/client/{oauth2ClientId}
method: get
operationId: OAuth2ClientIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/client/{oauth2ClientId}
method: put
operationId: OAuth2ClientIdPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/provider
method: get
operationId: OAuth2ProviderGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/provider
method: post
operationId: OAuth2ProviderPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/provider/{oauth2ProviderId}
method: get
operationId: OAuth2ProviderIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/provider/{oauth2ProviderId}
method: put
operationId: OAuth2ProviderIdPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/provider/{oauth2ProviderId}/token
method: get
operationId: OAuth2ProviderIdTokenGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token
method: get
operationId: OAuth2TokenGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/client
method: get
operationId: OAuth2TokenClientGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/client/{oauth2ClientId}/user/{userName}
method: delete
operationId: OAuth2TokenClientIdUserDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/token/client/{oauth2ClientId}/user/{userName}
method: get
operationId: OAuth2TokenClientIdUserGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/client/{oauth2ClientId}/user/{userName}
method: put
operationId: OAuth2TokenClientIdUserPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/token/provider
method: get
operationId: OAuth2TokenProviderGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/provider/{oauth2ProviderId}/user/{userName}
method: delete
operationId: OAuth2TokenProviderIdUserDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/token/provider/{oauth2ProviderId}/user/{userName}
method: get
operationId: OAuth2TokenProviderIdUserGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/provider/{oauth2ProviderId}/user/{userName}
method: put
operationId: OAuth2TokenProviderIdUserPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /oauth2/token/search
method: get
operationId: OAuth2TokenSearchGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /oauth2/token/{oAuth2TokenType}
method: get
operationId: OAuth2TokenTypeGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}
method: delete
operationId: DocumentPathDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}
method: get
operationId: DocumentPathGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}
method: post
operationId: DocumentPathPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /path/{docPath}
method: put
operationId: DocumentPathPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/path/{docPath}
method: delete
operationId: RepoIdDocumentPathDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/path/{docPath}
method: get
operationId: RepoIdDocumentPathGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /repo/{repoId}/path/{docPath}
method: post
operationId: RepoIdDocumentPathPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /repo/{repoId}/path/{docPath}
method: put
operationId: RepoIdDocumentPathPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /id/{docId}/@pp/{pageProviderName}
method: get
operationId: DocumentIdPageProviderAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@pp/{pageProviderName}
method: get
operationId: DocumentPathPageProviderAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /query
method: get
operationId: QueryGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /query/{providerName}
method: get
operationId: QueryProviderGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@rendition/{renditionName}
method: get
operationId: DocumentIdRenditionAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@rendition/{renditionName}
method: get
operationId: DocumentPathRenditionAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /config/schemas
method: get
operationId: ConfigurationSchemasGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /config/schemas/{schema}
method: get
operationId: ConfigurationSchemaGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/lang/{queryLanguage}/bulk/{actionId}
method: post
operationId: SearchLangBulkActionPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/lang/{queryLanguage}/execute
method: get
operationId: SearchLangExecuteGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/pp/{providerName}
method: get
operationId: SearchPageProviderGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/pp/{providerName}/bulk/{actionId}
method: post
operationId: SearchPageProviderBulkPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/pp/{providerName}/execute
method: get
operationId: SearchPageProviderExecuteGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/saved
method: get
operationId: SearchSavedGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/saved
method: post
operationId: SearchSavedPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/saved/{searchId}
method: delete
operationId: SearchSavedIdDelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/saved/{searchId}
method: get
operationId: SearchSavedIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /search/saved/{searchId}
method: put
operationId: SearchSavedIdPut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/saved/{searchId}/bulk/{actionId}
method: post
operationId: SearchSavedIdBulkActionPost
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /search/saved/{searchId}/execute
method: get
operationId: SearchSavedIdExecuteGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@search
method: get
operationId: DocumentIdSearchAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@search
method: get
operationId: DocumentPathSearchAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /id/{docId}/@task
method: get
operationId: DocumentIdTaskAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /path/{docPath}/@task
method: get
operationId: DocumentPathTaskAdapterGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /task
method: get
operationId: TaskGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /task/{taskId}
method: get
operationId: TaskIdGet
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /task/{taskId}/delegate
method: put
operationId: TaskDelegatePut
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /task/{taskId}/reassign
method: put
operationId: TaskReassignPut
x-agentic-acces
# --- truncated at 32 KB (38 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/nuxeo/refs/heads/main/agentic-access/nuxeo-agentic-access.yml