Zuora Agentic Access
Zuora exposes 446 API operations that an AI agent could call, of which 279 are state-changing ‘acting’ operations. This is a recommended x-agentic-access execution contract — the scope, audience, consequence tier, short-lived token constraints, and escalation each action should carry before it is handed to an autonomous agent.
By consequence: 167 read, 161 write, 117 physical, and 1 safety-critical.
1 operation are classed safety-critical and should require human-in-the-loop approval at runtime.
Contracts are classified heuristically from the provider’s OpenAPI and refresh on every APIs.io network build; audience is bound per deployment. The model follows Curity’s Access Intelligence (apidays Munich 2026). Browse every provider’s agent contracts at agentic-access.apis.io.
By consequence
Highest-consequence actions
The physical and safety-critical operations an agent could invoke — the ones that most warrant scoped tokens, tight TTLs, and escalation. Full per-operation contracts are in the source below.
| Method | Path | Consequence | Human-in-loop |
|---|---|---|---|
| PUT | /v1/bulk/{bulk-key}/stop | safety-critical | required |
| POST | /deployment-manager/deployment_artifacts/compare | physical | conditional |
| POST | /deployment-manager/deployment_artifacts/deploy | physical | conditional |
| POST | /deployment-manager/deployment_templates | physical | conditional |
| DELETE | /deployment-manager/deployment_templates/{id} | physical | conditional |
| POST | /notifications/callout-histories/resend | physical | conditional |
| POST | /notifications/email-histories/resend | physical | conditional |
| POST | /open-payment-method-types | physical | conditional |
| PUT | /open-payment-method-types/publish/{paymentMethodTypeName} | physical | conditional |
| PUT | /open-payment-method-types/{paymentMethodTypeName} | physical | conditional |
| POST | /payment-methods/apple-pay/domains | physical | conditional |
| DELETE | /payment-methods/apple-pay/domains/{id} | physical | conditional |
| POST | /v1/async/orders | physical | conditional |
| POST | /v1/async/orders/preview | physical | conditional |
| POST | /v1/creditmemos | physical | conditional |
| PUT | /v1/creditmemos/{creditMemoKey}/einvoice/generate | physical | conditional |
| POST | /v1/creditmemos/{creditMemoKey}/refunds | physical | conditional |
| POST | /v1/debitmemos | physical | conditional |
| PUT | /v1/debitmemos/{debitMemoKey}/einvoice/generate | physical | conditional |
| POST | /v1/einvoice/business-regions | physical | conditional |
| PUT | /v1/einvoice/business-regions/{key} | physical | conditional |
| DELETE | /v1/einvoice/business-regions/{key} | physical | conditional |
| POST | /v1/einvoice/service-providers | physical | conditional |
| PUT | /v1/einvoice/service-providers/{key} | physical | conditional |
| DELETE | /v1/einvoice/service-providers/{key} | physical | conditional |
Source
Agentic Access
generated: '2026-07-15'
method: generated
source: openapi/zuora-v1-openapi.yml
description: Recommended x-agentic-access execution contracts, classified heuristically from
the OpenAPI. A governance starting point for exposing this API to AI agents — review and bind
audience per deployment. See research/curity/agentic-governance/.
summary:
operations: 446
by_action_class:
acting: 279
connected: 167
by_consequence:
write: 161
read: 167
physical: 117
safety-critical: 1
human_in_the_loop_required: 1
operations:
- path: /v1/accounting-codes
method: post
operationId: POST_AccountingCode
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-codes
method: get
operationId: GET_AllAccountingCodes
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounting-codes/{ac-id}/activate
method: put
operationId: PUT_ActivateAccountingCode
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-codes/{ac-id}/deactivate
method: put
operationId: PUT_DeactivateAccountingCode
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-codes/{ac-id}
method: delete
operationId: DELETE_AccountingCode
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-codes/{ac-id}
method: get
operationId: GET_AccountingCode
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounting-codes/{ac-id}
method: put
operationId: PUT_AccountingCode
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods/{ap-id}/close
method: put
operationId: PUT_CloseAccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods/{ap-id}/pending-close
method: put
operationId: PUT_PendingCloseAccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods
method: post
operationId: POST_AccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods
method: get
operationId: GET_AllAccountingPeriods
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounting-periods/{ap-id}
method: get
operationId: GET_AccountingPeriod
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounting-periods/{ap-id}
method: put
operationId: PUT_UpdateAccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods/{ap-id}
method: delete
operationId: DELETE_AccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods/{ap-id}/reopen
method: put
operationId: PUT_ReopenAccountingPeriod
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounting-periods/{ap-id}/run-trial-balance
method: put
operationId: PUT_RunTrialBalance
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts
method: post
operationId: POST_Account
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts/{account-key}
method: get
operationId: GET_Account
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounts/{account-key}
method: put
operationId: PUT_Account
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts/{account-key}
method: delete
operationId: DELETE_Account
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts/{account-key}/summary
method: get
operationId: GET_AccountSummary
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounts/{account-key}/payment-methods
method: get
operationId: GET_AcountPaymentMethods
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounts/{account-key}/payment-methods/default
method: get
operationId: GET_AcountDefaultPaymentMethod
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/action/create
method: post
operationId: Action_POSTcreate
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/action/delete
method: post
operationId: Action_POSTdelete
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/action/query
method: post
operationId: Action_POSTquery
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/action/queryMore
method: post
operationId: Action_POSTqueryMore
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/action/update
method: post
operationId: Action_POSTupdate
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/batch-query/
method: post
operationId: POST_BatchQueryJob
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/batch-query/jobs/{jobid}
method: get
operationId: GET_BatchQueryJob
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/batch-query/jobs/{jobid}
method: delete
operationId: DELETE_BatchQueryJob
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/batch-query/jobs/partner/{partner}/project/{project}
method: get
operationId: GET_LastBatchQueryJob
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /system-health/api-requests/volume-summary
method: get
operationId: GET_SystemHealthApiVolumeSummary
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/attachments
method: post
operationId: POST_Attachments
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/attachments/{object-type}/{object-key}
method: get
operationId: GET_AttachmentsList
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/attachments/{attachment-id}
method: get
operationId: GET_Attachments
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/attachments/{attachment-id}
method: put
operationId: PUT_Attachments
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/attachments/{attachment-id}
method: delete
operationId: DELETE_Attachments
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /system-health/billing-documents/volume-summary
method: get
operationId: GET_SystemHealthBillingDocVolumeSummary
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/bill-runs
method: post
operationId: POST_CreateBillRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/bill-runs/{billRunId}/post
method: put
operationId: PUT_PostBillRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/bill-runs/{billRunId}
method: get
operationId: GET_BillRun
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/bill-runs/{billRunId}
method: delete
operationId: DELETE_DeleteBillRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/bill-runs/{billRunId}/cancel
method: put
operationId: PUT_CancelBillRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/bill-runs/{billRunKey}/emails
method: post
operationId: POST_EmailBillingDocumentsfromBillRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts/{key}/billing-documents/generate
method: post
operationId: POST_GenerateBillingDocuments
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/billing-documents
method: get
operationId: GET_BillingDocuments
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/accounts/billing-documents/files/deletion-jobs
method: post
operationId: POST_BillingDocumentFilesDeletionJob
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/accounts/billing-documents/files/deletion-jobs/{jobId}
method: get
operationId: GET_BillingDocumentFilesDeletionJob
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/billing-preview-runs
method: post
operationId: POST_BillingPreviewRun
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/billing-preview-runs/{billingPreviewRunId}
method: get
operationId: GET_BillingPreviewRun
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/catalog-groups
method: post
operationId: POST_CreateCatalogGroup
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/catalog-groups
method: get
operationId: GET_ListAllCatalogGroups
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/catalog-groups/{catalog-group-key}
method: get
operationId: GET_RetrieveCatalogGroup
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/catalog-groups/{catalog-group-key}
method: put
operationId: PUT_UpdateCatalogGroup
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/catalog-groups/{catalog-group-key}
method: delete
operationId: DELETE_CatalogGroup
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/catalog/products
method: get
operationId: GET_Catalog
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/catalog/products/{product-key}
method: get
operationId: GET_Product
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /deployment-manager/deployment_templates
method: post
operationId: POST_DeploymentTemplate
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /deployment-manager/deployment_templates
method: get
operationId: GET_Templates
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /deployment-manager/deployment_templates/{id}
method: get
operationId: GET_DeploymentTemplateDetail
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /deployment-manager/deployment_templates/{id}
method: delete
operationId: DELETE_DeploymentTemplate
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /deployment-manager/deployment_artifacts
method: get
operationId: GET_DownloadDeploymentTemplate
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /deployment-manager/deployment_artifacts/retrieve-settings
method: get
operationId: GET_SourceComponentDetails
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /deployment-manager/deployment_artifacts/compare
method: post
operationId: POST_CompareTemplate
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /deployment-manager/deployment_artifacts/deploy
method: post
operationId: POST_MigrateTenantSettings
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/contact-snapshots/{contact-snapshot-id}
method: get
operationId: GET_ContactSnapshot
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/contacts/{contactId}/scrub
method: put
operationId: PUT_ScrubContact
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/contacts
method: post
operationId: POST_CreateContact
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/contacts/{contactId}
method: get
operationId: GET_Contact
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/contacts/{contactId}
method: put
operationId: PUT_Contact
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/contacts/{contactId}
method: delete
operationId: DELETE_Contact
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos
method: post
operationId: POST_CreditMemoFromPrpc
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos
method: get
operationId: GET_CreditMemos
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/bulk
method: post
operationId: POST_CreateCreditMemos
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/bulk
method: put
operationId: PUT_UpdateCreditMemos
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/invoices/{invoiceKey}/creditmemos
method: post
operationId: POST_CreditMemoFromInvoice
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}
method: get
operationId: GET_CreditMemo
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoKey}
method: put
operationId: PUT_UpdateCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}
method: delete
operationId: DELETE_CreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/apply
method: put
operationId: PUT_ApplyCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/cancel
method: put
operationId: PUT_CancelCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/emails
method: post
operationId: POST_EmailCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/files
method: post
operationId: POST_UploadFileForCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/items
method: get
operationId: GET_CreditMemoItems
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoKey}/items/{cmitemid}
method: get
operationId: GET_CreditMemoItem
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoId}/items/{cmitemid}/taxation-items
method: get
operationId: GET_TaxationItemsOfCreditMemoItem
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoKey}/parts
method: get
operationId: GET_CreditMemoParts
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoKey}/parts/{partid}
method: get
operationId: GET_CreditMemoPart
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /v1/creditmemos/{creditMemoKey}/pdfs
method: post
operationId: POST_CreditMemoPDF
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/post
method: put
operationId: PUT_PostCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/refunds
method: post
operationId: POST_RefundCreditMemo
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/reverse
method: put
operationId: PUT_ReverseCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/taxationitems
method: post
operationId: POST_CM_TaxationItems
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/unapply
method: put
operationId: PUT_UnapplyCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/unpost
method: put
operationId: PUT_UnpostCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoId}/write-off
method: put
operationId: PUT_WriteOffCreditMemo
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /v1/creditmemos/{creditMemoKey}/einvoice/generate
method: put
operationId: PUT_GenerateEInvoiceFileForCreditMemo
x-agentic-access:
action-class: acting
consequence: physical
subject: required
audience: null
token:
max-ttl: 300
exchange: true
purpose-required: true
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /events/event-triggers
method: post
operationId: POST_EventTrigger
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
- path: /events/event-triggers
method: get
operationId: GET_EventTriggers
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /events/event-triggers/{id}
method: get
operationId: GET_EventTrigger
x-agentic-access:
action-class: connected
consequence: read
subject: optional
token:
max-ttl: 3600
audit: none
- path: /events/event-triggers/{id}
method: put
operationId: PUT_EventTrigger
x-agentic-access:
action-class: acting
consequence: write
subject: required
audience: null
token:
max-ttl: 900
escalation:
human-in-the-loop: conditional
triggers:
- abnormal
- high-value
audit: required
-
# --- truncated at 32 KB (142 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/zuora/refs/heads/main/agentic-access/zuora-agentic-access.yml