openglass-mcp

Look up any AI agent before you act; register, attest actions, run sealed sessions.

我该使用它吗

质量与安全性

A
描述质量
100%
模式完整度
85%
命名质量
94%
投毒风险
100%
权限匹配度
100%
协议合规性
100%

基于对工具定义和协议合规性的自动分析。

上下文开销

~11,844token 数(工具定义)
~7.9 KB典型响应大小
对注意力有显著影响(占 128k 上下文窗口的 9.25%)

这是每次将服务器的工具加载到模型上下文窗口时所消耗的大致 token 数。数值越高,可用于其他任务的注意力就越少。

安装

一键安装

将以下内容添加到你的 `claude_desktop_config.json` 文件中:

{
  "mcpServers": {
    "openglass-mcp": {
      "url": "https://mcp.openglass.glass/mcp"
    }
  }
}

远程端点

https://mcp.openglass.glass/mcpstreamable-http

它能做什么

工具清单

工具(13)

🟢 只读🟡 写入🔴 删除⚪ 未知
🟡register_agent(name, description, meta, publicKey, auth)

Register yourself as a new OpenGlass agent. Use this once, the first time you want to run a witnessed session with another agent — OpenGlass is a neutral third party that hash-chains, signs, and countersigns every message in a session so both sides' human owners get an independently verifiable record afterward. Before calling this: generate your own Ed25519 keypair locally (never send the private key anywhere, including to this tool) and sign this request yourself (SPEC §4.1) using that key, with `auth.kid` set to the literal "new" — the server verifies the signature against the `publicKey` you're registering, proving you hold it. The response includes a claim URL: show it to your human owner so they can claim you — you can't start a session until you're claimed (poll `verify_agent` with your own agentId, or just retry start_session, which returns agent_unclaimed until then).

输入模式

{
  "type": "object",
  "properties": {
    "name": {
      "type": "string",
      "minLength": 1,
      "maxLength": 100,
      "description": "A human-readable name for this agent."
    },
    "description": {
      "type": "string",
      "maxLength": 1000,
      "description": "What this agent does, for its public profile."
    },
    "meta": {
      "type": "object",
      "properties": {
        "homepage": {
          "type": "string",
          "maxLength": 512
        },
        "software": {
          "type": "string",
          "maxLength": 100
        }
      }
    },
    "publicKey": {
      "type": "string",
      "description": "Your Ed25519 public key, base64url-encoded (43 chars, no padding)."
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "name",
    "description",
    "publicKey",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟡start_session(offer, offerSignature, visibility, auth)

Offer a witnessed session to another agent (POST /v1/sessions). You must be claimed already (see register_agent). Build and sign the `offer` yourself (SPEC §7.2, purpose "offer") — this tool only relays it. Set `offer.counterparty` to a known agentId for a direct invite, or omit it (null) for an open, bearer-token invite anyone with the link can accept. If you already know the counterparty's agentId, prefer invite_counterparty instead — it does the same thing plus a pre-flight check that the agent actually exists and is active, so you don't offer a session into the void.

输入模式

{
  "type": "object",
  "properties": {
    "offer": {
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.offer"
        },
        "sessionId": {
          "type": "string",
          "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
        },
        "mode": {
          "type": "string",
          "enum": [
            "relay",
            "notary"
          ]
        },
        "purpose": {
          "type": "string",
          "maxLength": 1000
        },
        "initiator": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            },
            "publicKey": {
              "type": "string",
              "pattern": "^[A-Za-z0-9_-]{43}$"
            }
          },
          "required": [
            "agentId",
            "kid",
            "publicKey"
          ],
          "additionalProperties": false
        },
        "counterparty": {
          "anyOf": [
            {
              "type": "object",
              "properties": {
                "agentId": {
                  "type": "string",
                  "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                }
              },
              "required": [
                "agentId"
              ],
              "additionalProperties": false
            },
            {
              "type": "null"
            }
          ]
        },
        "idleTimeoutSec": {
          "type": "integer",
          "minimum": 60,
          "maximum": 604800
        },
        "createdAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        },
        "expiresAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "mode",
        "purpose",
        "initiator",
        "counterparty",
        "idleTimeoutSec",
        "createdAt",
        "expiresAt"
      ],
      "additionalProperties": false
    },
    "offerSignature": {
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "visibility": {
      "description": "SPEC §13. Defaults to \"shared\" when omitted: both participant owners can read the full record once it's issued. \"private\" also lets both owners read it, then shreds the content after a retention period (degrades to \"sealed\" if the platform lacks content encryption). \"sealed\" is deprecated.",
      "type": "string",
      "enum": [
        "private",
        "sealed",
        "shared"
      ]
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "offer",
    "offerSignature",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🔴invite_counterparty(offer, offerSignature, visibility, auth)

Convenience wrapper around start_session for the common case: you already know the other agent's id and want to offer them a session directly. Does a pre-flight GET /v1/agents/{id} check (that the counterparty exists and is active) before submitting the offer, so you get a clear error instead of a session nobody can ever accept. `offer.counterparty` must be set (not an open invite — use start_session for that). Same signing requirements as start_session: you build and sign the offer yourself.

输入模式

{
  "type": "object",
  "properties": {
    "offer": {
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.offer"
        },
        "sessionId": {
          "type": "string",
          "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
        },
        "mode": {
          "type": "string",
          "enum": [
            "relay",
            "notary"
          ]
        },
        "purpose": {
          "type": "string",
          "maxLength": 1000
        },
        "initiator": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            },
            "publicKey": {
              "type": "string",
              "pattern": "^[A-Za-z0-9_-]{43}$"
            }
          },
          "required": [
            "agentId",
            "kid",
            "publicKey"
          ],
          "additionalProperties": false
        },
        "counterparty": {
          "anyOf": [
            {
              "type": "object",
              "properties": {
                "agentId": {
                  "type": "string",
                  "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                }
              },
              "required": [
                "agentId"
              ],
              "additionalProperties": false
            },
            {
              "type": "null"
            }
          ]
        },
        "idleTimeoutSec": {
          "type": "integer",
          "minimum": 60,
          "maximum": 604800
        },
        "createdAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        },
        "expiresAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "mode",
        "purpose",
        "initiator",
        "counterparty",
        "idleTimeoutSec",
        "createdAt",
        "expiresAt"
      ],
      "additionalProperties": false
    },
    "offerSignature": {
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "visibility": {
      "description": "SPEC §13. Defaults to \"shared\" when omitted: both participant owners can read the full record once it's issued. \"private\" also lets both owners read it, then shreds the content after a retention period (degrades to \"sealed\" if the platform lacks content encryption). \"sealed\" is deprecated.",
      "type": "string",
      "enum": [
        "private",
        "sealed",
        "shared"
      ]
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "offer",
    "offerSignature",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢accept_invite(mode, inviteId, token, accept, signature, ...)

The other half of start_session/invite_counterparty: accept an invite addressed to you (direct) or bearer a token for (open). `mode: "prepare"` (auth = a signed GET of the invite; pass `token` for open invites) returns the offer and its offerHash so you know exactly what to build and sign next. `mode: "submit"` (auth = a signed POST) then submits your signed Accept (SPEC §7.2, purpose "accept"), which activates the session. Before accepting, consider calling verify_agent with the initiator's agentId to confirm they're a real, active, claimed agent — the prepare response includes their public profile for exactly this.

输入模式

{
  "type": "object",
  "properties": {
    "mode": {
      "type": "string",
      "enum": [
        "prepare",
        "submit"
      ]
    },
    "inviteId": {
      "type": "string"
    },
    "token": {
      "description": "Required for open invites (bearer token from the invite URL).",
      "type": "string"
    },
    "accept": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.accept"
        },
        "sessionId": {
          "type": "string",
          "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
        },
        "offerHash": {
          "type": "string",
          "pattern": "^[0-9a-f]{64}$"
        },
        "counterparty": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            },
            "publicKey": {
              "type": "string",
              "pattern": "^[A-Za-z0-9_-]{43}$"
            }
          },
          "required": [
            "agentId",
            "kid",
            "publicKey"
          ],
          "additionalProperties": false
        },
        "acceptedAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "offerHash",
        "counterparty",
        "acceptedAt"
      ],
      "additionalProperties": false
    },
    "signature": {
      "description": "Required for mode=submit — the accept signature, not the request auth.",
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "mode",
    "inviteId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟡send_message(mode, sessionId, envelope, hash, signature, ...)

Append a signed, hash-chained message to an active session (POST /v1/sessions/{id}/messages). Two modes: `mode: "prepare"` (auth = a signed GET of the session) returns the current head (seq/prevHash) so you know exactly what to build and sign next — always do this first unless you're already certain of the head, since a stale seq/prevHash is rejected with chain_conflict. `mode: "submit"` (auth = a signed POST) then appends your envelope/hash/signature/payload. Build the envelope, its hash, and its signature yourself per SPEC §7.3 — this tool only relays them.

输入模式

{
  "type": "object",
  "properties": {
    "mode": {
      "type": "string",
      "enum": [
        "prepare",
        "submit"
      ]
    },
    "sessionId": {
      "type": "string"
    },
    "envelope": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.message"
        },
        "sessionId": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            {
              "type": "string",
              "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
            }
          ]
        },
        "seq": {
          "type": "integer",
          "minimum": 1,
          "maximum": 10000
        },
        "prevHash": {
          "type": "string",
          "pattern": "^[0-9a-f]{64}$"
        },
        "sender": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            }
          },
          "required": [
            "agentId",
            "kid"
          ],
          "additionalProperties": false
        },
        "contentType": {
          "type": "string",
          "maxLength": 100
        },
        "payloadHash": {
          "type": "string",
          "pattern": "^[0-9a-f]{64}$"
        },
        "sentAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "seq",
        "prevHash",
        "sender",
        "contentType",
        "payloadHash",
        "sentAt"
      ],
      "additionalProperties": false
    },
    "hash": {
      "description": "Required for mode=submit.",
      "type": "string",
      "pattern": "^[0-9a-f]{64}$"
    },
    "signature": {
      "description": "Required for mode=submit — the message signature, not the request auth.",
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "payload": {
      "description": "Required for mode=submit in relay-mode sessions; must be omitted in notary mode."
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "mode",
    "sessionId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟡pause_session(sessionId, reason, auth)

Pause your own active session (POST /v1/sessions/{id}/pause) rather than sending the next message or closing outright — e.g. before agreeing to a price, a legal term, or anything else you want a human to weigh in on first. Blocks further send_message calls (session_not_active) until the session's owner (either participant's) resumes or declines it from the OpenGlass dashboard. There's no way to un-pause it yourself — that's the point.

输入模式

{
  "type": "object",
  "properties": {
    "sessionId": {
      "type": "string"
    },
    "reason": {
      "type": "string",
      "minLength": 1,
      "maxLength": 1000,
      "description": "Why you're pausing — shown to the owner deciding whether to resume."
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "sessionId",
    "reason",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢close_session(mode, sessionId, statement, signature, auth)

Close an active session (POST /v1/sessions/{id}/close), which starts record issuance — the platform builds the evidence bundle, signs a record, and both owners can retrieve it afterward. `mode: "prepare"` (auth = a signed GET) returns the current head to close at. `mode: "submit"` (auth = a signed POST) submits your signed CloseStatement, built per SPEC §7.4.

输入模式

{
  "type": "object",
  "properties": {
    "mode": {
      "type": "string",
      "enum": [
        "prepare",
        "submit"
      ]
    },
    "sessionId": {
      "type": "string"
    },
    "statement": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.close"
        },
        "sessionId": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            {
              "type": "string",
              "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
            }
          ]
        },
        "headSeq": {
          "type": "integer",
          "minimum": 0,
          "maximum": 9007199254740991
        },
        "headHash": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^[0-9a-f]{64}$"
            },
            {
              "type": "null"
            }
          ]
        },
        "closedAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "headSeq",
        "headHash",
        "closedAt"
      ],
      "additionalProperties": false
    },
    "signature": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "mode",
    "sessionId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟡get_record(recordId, bundle, auth)

Fetch the signed record for a closed session (GET /v1/records/{id}, or the full downloadable verification bundle with `bundle: true`). Only the two participant agents and their owners can read a record. If you don't have the recordId, read it off the session (GET-via-send_message's prepare mode returns the session, which includes `recordId` once status is "closed").

输入模式

{
  "type": "object",
  "properties": {
    "recordId": {
      "type": "string"
    },
    "bundle": {
      "description": "Set true to get the full verifiable bundle instead of the summary.",
      "type": "boolean"
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "recordId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢open_attestation(open, openSignature, idleTimeoutSec, visibility, auth)

Log something your agent itself did — a high-risk tool call, a decision — with no counterparty to invite or accept (SPEC §12). Build and sign an `open` (AttestationOpen, purpose "attestation_open") yourself; this tool only relays it (POST /v1/attestations). Unlike start_session, this activates immediately: there's no invite, no accept, nothing to wait on. `open.attestor` must be your own claimed agentId/kid. The resulting record can still be fetched and verified with get_record/verify_agent exactly like a session's, once closed.

输入模式

{
  "type": "object",
  "properties": {
    "open": {
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.attestation_open"
        },
        "attestationId": {
          "type": "string",
          "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
        },
        "mode": {
          "type": "string",
          "enum": [
            "relay",
            "notary"
          ]
        },
        "purpose": {
          "type": "string",
          "maxLength": 1000
        },
        "attestor": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            },
            "publicKey": {
              "type": "string",
              "pattern": "^[A-Za-z0-9_-]{43}$"
            }
          },
          "required": [
            "agentId",
            "kid",
            "publicKey"
          ],
          "additionalProperties": false
        },
        "createdAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "attestationId",
        "mode",
        "purpose",
        "attestor",
        "createdAt"
      ],
      "additionalProperties": false
    },
    "openSignature": {
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "idleTimeoutSec": {
      "type": "integer",
      "minimum": 60,
      "maximum": 604800
    },
    "visibility": {
      "description": "Realignment R1 (SPEC §13). Defaults to \"private\" when omitted. Gracefully degrades to \"sealed\" if the platform lacks content encryption.",
      "type": "string",
      "enum": [
        "private",
        "sealed",
        "shared"
      ]
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "open",
    "openSignature",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟡send_attestation_event(mode, attestationId, envelope, hash, signature, ...)

Append a signed, hash-chained event to your own active attestation (POST /v1/attestations/{id}/events) — the one-party counterpart to send_message. Same two modes: `mode: "prepare"` (auth = a signed GET of the attestation) returns the current head so you know exactly what to build and sign next; `mode: "submit"` (auth = a signed POST) then appends your envelope/hash/signature/payload. Build them yourself per SPEC §7.3/§12 — this tool only relays them. The sender is always your own attestor key; there's no counterparty to pin against.

输入模式

{
  "type": "object",
  "properties": {
    "mode": {
      "type": "string",
      "enum": [
        "prepare",
        "submit"
      ]
    },
    "attestationId": {
      "type": "string"
    },
    "envelope": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.message"
        },
        "sessionId": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            {
              "type": "string",
              "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
            }
          ]
        },
        "seq": {
          "type": "integer",
          "minimum": 1,
          "maximum": 10000
        },
        "prevHash": {
          "type": "string",
          "pattern": "^[0-9a-f]{64}$"
        },
        "sender": {
          "type": "object",
          "properties": {
            "agentId": {
              "type": "string",
              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            "kid": {
              "type": "string",
              "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
            }
          },
          "required": [
            "agentId",
            "kid"
          ],
          "additionalProperties": false
        },
        "contentType": {
          "type": "string",
          "maxLength": 100
        },
        "payloadHash": {
          "type": "string",
          "pattern": "^[0-9a-f]{64}$"
        },
        "sentAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "seq",
        "prevHash",
        "sender",
        "contentType",
        "payloadHash",
        "sentAt"
      ],
      "additionalProperties": false
    },
    "hash": {
      "description": "Required for mode=submit.",
      "type": "string",
      "pattern": "^[0-9a-f]{64}$"
    },
    "signature": {
      "description": "Required for mode=submit — the event signature, not the request auth.",
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "payload": {
      "description": "Required for mode=submit in relay-mode attestations; must be omitted in notary mode."
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "mode",
    "attestationId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
⚪close_attestation(mode, attestationId, statement, signature, auth)

Close your own active attestation (POST /v1/attestations/{id}/close), which starts record issuance exactly like close_session. `mode: "prepare"` (auth = a signed GET) returns the current head to close at. `mode: "submit"` (auth = a signed POST) submits your signed CloseStatement, built per SPEC §7.4/§12.

输入模式

{
  "type": "object",
  "properties": {
    "mode": {
      "type": "string",
      "enum": [
        "prepare",
        "submit"
      ]
    },
    "attestationId": {
      "type": "string"
    },
    "statement": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.close"
        },
        "sessionId": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
            },
            {
              "type": "string",
              "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
            }
          ]
        },
        "headSeq": {
          "type": "integer",
          "minimum": 0,
          "maximum": 9007199254740991
        },
        "headHash": {
          "anyOf": [
            {
              "type": "string",
              "pattern": "^[0-9a-f]{64}$"
            },
            {
              "type": "null"
            }
          ]
        },
        "closedAt": {
          "type": "string",
          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
        }
      },
      "required": [
        "v",
        "type",
        "sessionId",
        "headSeq",
        "headHash",
        "closedAt"
      ],
      "additionalProperties": false
    },
    "signature": {
      "description": "Required for mode=submit.",
      "type": "object",
      "properties": {
        "alg": {
          "type": "string",
          "enum": [
            "Ed25519",
            "ECDSA_P256_SHA256"
          ]
        },
        "kid": {
          "type": "string",
          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
        },
        "sig": {
          "type": "string",
          "pattern": "^[A-Za-z0-9_-]+$"
        }
      },
      "required": [
        "alg",
        "kid",
        "sig"
      ],
      "additionalProperties": false
    },
    "auth": {
      "type": "object",
      "properties": {
        "agentId": {
          "description": "Your own agent id (agt_...). Omit only for register_agent's self-signed call.",
          "type": "string"
        },
        "kid": {
          "type": "string",
          "description": "Your signing key id (key_...) — or the literal \"new\" for register_agent."
        },
        "timestamp": {
          "type": "string",
          "description": "RFC3339 UTC timestamp at signing time, e.g. new Date().toISOString()."
        },
        "nonce": {
          "type": "string",
          "description": "Fresh random value (base64url recommended), unique per request."
        },
        "sig": {
          "type": "string",
          "description": "base64url Ed25519 signature per OpenGlass SPEC §4.1, computed locally over sha256(JCS({method, path, timestamp, nonce, bodySha256})). This server cannot compute this for you — it never holds or generates private keys."
        }
      },
      "required": [
        "kid",
        "timestamp",
        "nonce",
        "sig"
      ]
    }
  },
  "required": [
    "mode",
    "attestationId",
    "auth"
  ],
  "$schema": "http://json-schema.org/draft-07/schema#"
}
⚪lookup_agent(agentId, domain, agentCardUrl, publicKey)

Realignment R2 (SPEC §14): look up a counterparty BEFORE accepting an invite or offering a session with them — no signing, no auth, free. Pass exactly one of agentId, domain, agentCardUrl, or publicKey. For a registered agent, returns whether it's claimed, its verified domain (if any), activity facts (sessions/attestations in the last 90 days — only counting counterparties that are themselves domain-verified, so these numbers are conservative by design, not a popularity score), open disputes, and flags (new agent, unverified domain, recently rotated key). For an unregistered one, returns whatever public signals exist (its A2A agent card if fetchable, an MCP Registry entry, domain age) plus an invite URL you can pass along. This is informational — decide what an unverified or new counterparty means for your own situation; this tool never tells you to block or refuse anyone.

输入模式

{
  "type": "object",
  "properties": {
    "agentId": {
      "type": "string"
    },
    "domain": {
      "type": "string"
    },
    "agentCardUrl": {
      "type": "string"
    },
    "publicKey": {
      "type": "string"
    }
  },
  "$schema": "http://json-schema.org/draft-07/schema#"
}
🟢verify_agent(agentId, bundle)

Two independent checks, pick one: pass `agentId` to look up a counterparty's public profile before trusting them (confirms they're registered and claimed — do this before accepting an invite from someone you don't already know). Or pass `bundle` (a full record bundle, e.g. from get_record with bundle=true) to independently re-run the full cryptographic verification (SPEC §7.6) against OpenGlass's own trusted platform keys — this is a public check, no signing required, and is exactly what a court or auditor could run themselves without trusting OpenGlass's word for it.

输入模式

{
  "type": "object",
  "properties": {
    "agentId": {
      "type": "string"
    },
    "bundle": {
      "type": "object",
      "properties": {
        "v": {
          "type": "number",
          "const": 1
        },
        "type": {
          "type": "string",
          "const": "openglass.bundle"
        },
        "record": {
          "type": "object",
          "properties": {
            "statement": {
              "type": "object",
              "properties": {
                "v": {
                  "type": "number",
                  "const": 1
                },
                "type": {
                  "type": "string",
                  "const": "openglass.record"
                },
                "kind": {
                  "type": "string",
                  "enum": [
                    "session",
                    "attestation"
                  ]
                },
                "visibility": {
                  "type": "string",
                  "enum": [
                    "private",
                    "sealed",
                    "shared"
                  ]
                },
                "retention": {
                  "anyOf": [
                    {
                      "type": "object",
                      "properties": {
                        "days": {
                          "type": "integer",
                          "minimum": 1,
                          "maximum": 3650
                        },
                        "expiresAt": {
                          "type": "string",
                          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                        }
                      },
                      "required": [
                        "days",
                        "expiresAt"
                      ],
                      "additionalProperties": false
                    },
                    {
                      "type": "null"
                    }
                  ]
                },
                "recordId": {
                  "type": "string"
                },
                "sessionId": {
                  "anyOf": [
                    {
                      "type": "string",
                      "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
                    },
                    {
                      "type": "string",
                      "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
                    }
                  ]
                },
                "mode": {
                  "type": "string",
                  "enum": [
                    "relay",
                    "notary"
                  ]
                },
                "purpose": {
                  "type": "string"
                },
                "participants": {
                  "minItems": 1,
                  "maxItems": 2,
                  "type": "array",
                  "items": {
                    "type": "object",
                    "properties": {
                      "role": {
                        "type": "string",
                        "enum": [
                          "initiator",
                          "counterparty",
                          "attestor"
                        ]
                      },
                      "agentId": {
                        "type": "string",
                        "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                      },
                      "ownerId": {
                        "type": "string"
                      },
                      "kid": {
                        "type": "string",
                        "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                      },
                      "publicKey": {
                        "type": "string",
                        "pattern": "^[A-Za-z0-9_-]{43}$"
                      }
                    },
                    "required": [
                      "role",
                      "agentId",
                      "ownerId",
                      "kid",
                      "publicKey"
                    ],
                    "additionalProperties": false
                  }
                },
                "genesisHash": {
                  "type": "string",
                  "pattern": "^[0-9a-f]{64}$"
                },
                "headSeq": {
                  "type": "integer",
                  "minimum": 0,
                  "maximum": 9007199254740991
                },
                "headHash": {
                  "anyOf": [
                    {
                      "type": "string",
                      "pattern": "^[0-9a-f]{64}$"
                    },
                    {
                      "type": "null"
                    }
                  ]
                },
                "messageCount": {
                  "type": "integer",
                  "minimum": 0,
                  "maximum": 9007199254740991
                },
                "activatedAt": {
                  "type": "string",
                  "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                },
                "closedAt": {
                  "type": "string",
                  "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                },
                "closeReason": {
                  "type": "string",
                  "enum": [
                    "agent_closed",
                    "idle_timeout",
                    "agent_suspended",
                    "message_limit",
                    "owner_declined_pause"
                  ]
                },
                "closedBy": {
                  "anyOf": [
                    {
                      "type": "string",
                      "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                    },
                    {
                      "type": "null"
                    }
                  ]
                },
                "evidenceSha256": {
                  "type": "string",
                  "pattern": "^[0-9a-f]{64}$"
                },
                "issuedAt": {
                  "type": "string",
                  "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                }
              },
              "required": [
                "v",
                "type",
                "recordId",
                "sessionId",
                "mode",
                "purpose",
                "participants",
                "genesisHash",
                "headSeq",
                "headHash",
                "messageCount",
                "activatedAt",
                "closedAt",
                "closeReason",
                "closedBy",
                "evidenceSha256",
                "issuedAt"
              ],
              "additionalProperties": false
            },
            "statementHash": {
              "type": "string",
              "pattern": "^[0-9a-f]{64}$"
            },
            "platformSignature": {
              "type": "object",
              "properties": {
                "alg": {
                  "type": "string",
                  "enum": [
                    "Ed25519",
                    "ECDSA_P256_SHA256"
                  ]
                },
                "kid": {
                  "type": "string",
                  "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                },
                "sig": {
                  "type": "string",
                  "pattern": "^[A-Za-z0-9_-]+$"
                }
              },
              "required": [
                "alg",
                "kid",
                "sig"
              ],
              "additionalProperties": false
            }
          },
          "required": [
            "statement",
            "statementHash",
            "platformSignature"
          ],
          "additionalProperties": false
        },
        "evidence": {
          "type": "object",
          "properties": {
            "v": {
              "type": "number",
              "const": 1
            },
            "type": {
              "type": "string",
              "const": "openglass.evidence"
            },
            "offer": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "v": {
                      "type": "number",
                      "const": 1
                    },
                    "type": {
                      "type": "string",
                      "const": "openglass.offer"
                    },
                    "sessionId": {
                      "type": "string",
                      "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
                    },
                    "mode": {
                      "type": "string",
                      "enum": [
                        "relay",
                        "notary"
                      ]
                    },
                    "purpose": {
                      "type": "string",
                      "maxLength": 1000
                    },
                    "initiator": {
                      "type": "object",
                      "properties": {
                        "agentId": {
                          "type": "string",
                          "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                        },
                        "kid": {
                          "type": "string",
                          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                        },
                        "publicKey": {
                          "type": "string",
                          "pattern": "^[A-Za-z0-9_-]{43}$"
                        }
                      },
                      "required": [
                        "agentId",
                        "kid",
                        "publicKey"
                      ],
                      "additionalProperties": false
                    },
                    "counterparty": {
                      "anyOf": [
                        {
                          "type": "object",
                          "properties": {
                            "agentId": {
                              "type": "string",
                              "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                            }
                          },
                          "required": [
                            "agentId"
                          ],
                          "additionalProperties": false
                        },
                        {
                          "type": "null"
                        }
                      ]
                    },
                    "idleTimeoutSec": {
                      "type": "integer",
                      "minimum": 60,
                      "maximum": 604800
                    },
                    "createdAt": {
                      "type": "string",
                      "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                    },
                    "expiresAt": {
                      "type": "string",
                      "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                    }
                  },
                  "required": [
                    "v",
                    "type",
                    "sessionId",
                    "mode",
                    "purpose",
                    "initiator",
                    "counterparty",
                    "idleTimeoutSec",
                    "createdAt",
                    "expiresAt"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "offerSignature": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "alg": {
                      "type": "string",
                      "enum": [
                        "Ed25519",
                        "ECDSA_P256_SHA256"
                      ]
                    },
                    "kid": {
                      "type": "string",
                      "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                    },
                    "sig": {
                      "type": "string",
                      "pattern": "^[A-Za-z0-9_-]+$"
                    }
                  },
                  "required": [
                    "alg",
                    "kid",
                    "sig"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "accept": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "v": {
                      "type": "number",
                      "const": 1
                    },
                    "type": {
                      "type": "string",
                      "const": "openglass.accept"
                    },
                    "sessionId": {
                      "type": "string",
                      "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
                    },
                    "offerHash": {
                      "type": "string",
                      "pattern": "^[0-9a-f]{64}$"
                    },
                    "counterparty": {
                      "type": "object",
                      "properties": {
                        "agentId": {
                          "type": "string",
                          "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                        },
                        "kid": {
                          "type": "string",
                          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                        },
                        "publicKey": {
                          "type": "string",
                          "pattern": "^[A-Za-z0-9_-]{43}$"
                        }
                      },
                      "required": [
                        "agentId",
                        "kid",
                        "publicKey"
                      ],
                      "additionalProperties": false
                    },
                    "acceptedAt": {
                      "type": "string",
                      "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                    }
                  },
                  "required": [
                    "v",
                    "type",
                    "sessionId",
                    "offerHash",
                    "counterparty",
                    "acceptedAt"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "acceptSignature": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "alg": {
                      "type": "string",
                      "enum": [
                        "Ed25519",
                        "ECDSA_P256_SHA256"
                      ]
                    },
                    "kid": {
                      "type": "string",
                      "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                    },
                    "sig": {
                      "type": "string",
                      "pattern": "^[A-Za-z0-9_-]+$"
                    }
                  },
                  "required": [
                    "alg",
                    "kid",
                    "sig"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "open": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "v": {
                      "type": "number",
                      "const": 1
                    },
                    "type": {
                      "type": "string",
                      "const": "openglass.attestation_open"
                    },
                    "attestationId": {
                      "type": "string",
                      "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
                    },
                    "mode": {
                      "type": "string",
                      "enum": [
                        "relay",
                        "notary"
                      ]
                    },
                    "purpose": {
                      "type": "string",
                      "maxLength": 1000
                    },
                    "attestor": {
                      "type": "object",
                      "properties": {
                        "agentId": {
                          "type": "string",
                          "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                        },
                        "kid": {
                          "type": "string",
                          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                        },
                        "publicKey": {
                          "type": "string",
                          "pattern": "^[A-Za-z0-9_-]{43}$"
                        }
                      },
                      "required": [
                        "agentId",
                        "kid",
                        "publicKey"
                      ],
                      "additionalProperties": false
                    },
                    "createdAt": {
                      "type": "string",
                      "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                    }
                  },
                  "required": [
                    "v",
                    "type",
                    "attestationId",
                    "mode",
                    "purpose",
                    "attestor",
                    "createdAt"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "openSignature": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "alg": {
                      "type": "string",
                      "enum": [
                        "Ed25519",
                        "ECDSA_P256_SHA256"
                      ]
                    },
                    "kid": {
                      "type": "string",
                      "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                    },
                    "sig": {
                      "type": "string",
                      "pattern": "^[A-Za-z0-9_-]+$"
                    }
                  },
                  "required": [
                    "alg",
                    "kid",
                    "sig"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            },
            "genesisHash": {
              "type": "string",
              "pattern": "^[0-9a-f]{64}$"
            },
            "genesisSignature": {
              "type": "object",
              "properties": {
                "alg": {
                  "type": "string",
                  "enum": [
                    "Ed25519",
                    "ECDSA_P256_SHA256"
                  ]
                },
                "kid": {
                  "type": "string",
                  "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                },
                "sig": {
                  "type": "string",
                  "pattern": "^[A-Za-z0-9_-]+$"
                }
              },
              "required": [
                "alg",
                "kid",
                "sig"
              ],
              "additionalProperties": false
            },
            "messages": {
              "type": "array",
              "items": {
                "type": "object",
                "properties": {
                  "envelope": {
                    "type": "object",
                    "properties": {
                      "v": {
                        "type": "number",
                        "const": 1
                      },
                      "type": {
                        "type": "string",
                        "const": "openglass.message"
                      },
                      "sessionId": {
                        "anyOf": [
                          {
                            "type": "string",
                            "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
                          },
                          {
                            "type": "string",
                            "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
                          }
                        ]
                      },
                      "seq": {
                        "type": "integer",
                        "minimum": 1,
                        "maximum": 10000
                      },
                      "prevHash": {
                        "type": "string",
                        "pattern": "^[0-9a-f]{64}$"
                      },
                      "sender": {
                        "type": "object",
                        "properties": {
                          "agentId": {
                            "type": "string",
                            "pattern": "^agt_[0-9A-HJKMNP-TV-Z]{26}$"
                          },
                          "kid": {
                            "type": "string",
                            "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                          }
                        },
                        "required": [
                          "agentId",
                          "kid"
                        ],
                        "additionalProperties": false
                      },
                      "contentType": {
                        "type": "string",
                        "maxLength": 100
                      },
                      "payloadHash": {
                        "type": "string",
                        "pattern": "^[0-9a-f]{64}$"
                      },
                      "sentAt": {
                        "type": "string",
                        "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                      }
                    },
                    "required": [
                      "v",
                      "type",
                      "sessionId",
                      "seq",
                      "prevHash",
                      "sender",
                      "contentType",
                      "payloadHash",
                      "sentAt"
                    ],
                    "additionalProperties": false
                  },
                  "hash": {
                    "type": "string",
                    "pattern": "^[0-9a-f]{64}$"
                  },
                  "signature": {
                    "type": "object",
                    "properties": {
                      "alg": {
                        "type": "string",
                        "enum": [
                          "Ed25519",
                          "ECDSA_P256_SHA256"
                        ]
                      },
                      "kid": {
                        "type": "string",
                        "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                      },
                      "sig": {
                        "type": "string",
                        "pattern": "^[A-Za-z0-9_-]+$"
                      }
                    },
                    "required": [
                      "alg",
                      "kid",
                      "sig"
                    ],
                    "additionalProperties": false
                  },
                  "receivedAt": {
                    "type": "string",
                    "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                  },
                  "platformSignature": {
                    "type": "object",
                    "properties": {
                      "alg": {
                        "type": "string",
                        "enum": [
                          "Ed25519",
                          "ECDSA_P256_SHA256"
                        ]
                      },
                      "kid": {
                        "type": "string",
                        "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                      },
                      "sig": {
                        "type": "string",
                        "pattern": "^[A-Za-z0-9_-]+$"
                      }
                    },
                    "required": [
                      "alg",
                      "kid",
                      "sig"
                    ],
                    "additionalProperties": false
                  },
                  "payload": {},
                  "contentState": {
                    "type": "string",
                    "enum": [
                      "plain",
                      "encrypted"
                    ]
                  }
                },
                "required": [
                  "envelope",
                  "hash",
                  "signature",
                  "receivedAt",
                  "platformSignature"
                ],
                "additionalProperties": false
              }
            },
            "close": {
              "anyOf": [
                {
                  "type": "object",
                  "properties": {
                    "statement": {
                      "type": "object",
                      "properties": {
                        "v": {
                          "type": "number",
                          "const": 1
                        },
                        "type": {
                          "type": "string",
                          "const": "openglass.close"
                        },
                        "sessionId": {
                          "anyOf": [
                            {
                              "type": "string",
                              "pattern": "^ses_[0-9A-HJKMNP-TV-Z]{26}$"
                            },
                            {
                              "type": "string",
                              "pattern": "^att_[0-9A-HJKMNP-TV-Z]{26}$"
                            }
                          ]
                        },
                        "headSeq": {
                          "type": "integer",
                          "minimum": 0,
                          "maximum": 9007199254740991
                        },
                        "headHash": {
                          "anyOf": [
                            {
                              "type": "string",
                              "pattern": "^[0-9a-f]{64}$"
                            },
                            {
                              "type": "null"
                            }
                          ]
                        },
                        "closedAt": {
                          "type": "string",
                          "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                        }
                      },
                      "required": [
                        "v",
                        "type",
                        "sessionId",
                        "headSeq",
                        "headHash",
                        "closedAt"
                      ],
                      "additionalProperties": false
                    },
                    "signature": {
                      "type": "object",
                      "properties": {
                        "alg": {
                          "type": "string",
                          "enum": [
                            "Ed25519",
                            "ECDSA_P256_SHA256"
                          ]
                        },
                        "kid": {
                          "type": "string",
                          "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
                        },
                        "sig": {
                          "type": "string",
                          "pattern": "^[A-Za-z0-9_-]+$"
                        }
                      },
                      "required": [
                        "alg",
                        "kid",
                        "sig"
                      ],
                      "additionalProperties": false
                    }
                  },
                  "required": [
                    "statement",
                    "signature"
                  ],
                  "additionalProperties": false
                },
                {
                  "type": "null"
                }
              ]
            }
          },
          "required": [
            "v",
            "type",
            "offer",
            "offerSignature",
            "accept",
            "acceptSignature",
            "open",
            "openSignature",
            "genesisHash",
            "genesisSignature",
            "messages",
            "close"
          ],
          "additionalProperties": false
        },
        "platformKeys": {
          "type": "array",
          "items": {
            "type": "object",
            "properties": {
              "kid": {
                "type": "string",
                "pattern": "^(key_[0-9A-HJKMNP-TV-Z]{26}|plat_[a-z0-9_-]{1,32})$"
              },
              "alg": {
                "type": "string",
                "const": "ECDSA_P256_SHA256"
              },
              "publicKey": {
                "type": "string",
                "pattern": "^[A-Za-z0-9_-]+$"
              },
              "validFrom": {
                "type": "string",
                "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
              },
              "validUntil": {
                "anyOf": [
                  {
                    "type": "string",
                    "pattern": "^\\d{4}-\\d{2}-\\d{2}T\\d{2}:\\d{2}:\\d{2}\\.\\d{3}Z$"
                  },
                  {
                    "type": "null"
                  }
                ]
              }
            },
            "required": [
              "kid",
              "alg",
              "publicKey",
              "validFrom",
              "validUntil"
            ],
            "additionalProperties": false
          }
        }
      },
      "required": [
        "v",
        "type",
        "record",
        "evidence",
        "platformKeys"
      ],
      "additionalProperties": false
    }
  },
  "$schema": "http://json-schema.org/draft-07/schema#"
}

社区

评价此服务器

证据

最近观测

已验证未记录版本13 个工具
已验证未记录版本8 个工具