LocalEndpoint
Metadata-onlyNo public command dispatch Browser-local validationNo upload intake Private runtime stays localNo localhost probing Invited distributionChecksum-backed artifacts

Phase 2.46 / v1.5.65

UAI-1 Envelope

UAI-1 envelope examples show machine-readable metadata shape without granting runtime authority.

UAI-1 envelope console

Metadata-only UAI-1 envelope.

The envelope lets agents inspect LocalEndpoint identity, route context, boundary flags, and evidence references without receiving runtime authority.

Profile Package identity is readable

Version, profile name, route context, and public metadata help agents understand what they are reading.

Routes Context points to public surfaces

Route index, OpenAPI profile, field registry, and agent brief are reference links, not control channels.

Authority Runtime authority remains false

A machine-readable envelope is not permission to run a local endpoint, fetch localhost, or dispatch commands.

Review Humans stay in the loop

Use envelope data with validator receipts and Desktop review instead of hidden automation.

EnvelopeEnvelope example

Canonical metadata wrapper for public route context and boundary flags.

ConformanceConformance pack

Machine-readable expectations for envelope shape and validation behavior.

FieldsField registry

Named fields agents can inspect without receiving runtime capability.

TransportTransport bindings

Transport metadata describes shape without opening a local channel.

OpenAPIOpenAPI profile

Public endpoint descriptions for route discovery and review.

Agent briefllms.txt

Plain agent instructions for public-safe interpretation and no-control boundaries.

Envelope contract Metadata only Runtime authority false No localhost execution Human review stays required
Profile

Envelope describes public context

The envelope can identify package version, profile, route intent, and boundaries.

Envelope JSON
Authority

Runtime authority remains false

A machine-readable envelope is not permission to run a local endpoint or command.

Technical boundary
Review

Humans stay in the loop

Use envelope data with validator receipts and Desktop review instead of hidden automation.

Desktop path

Operating boundary

Public clarity, local authority.

This public site is static metadata and does not dispatch desktop commands, probe localhost, upload files, collect telemetry, request credentials, or claim runtime safety certification.