{"ok":true,"kind":"crawlcheck-capability-registry-entry","v":1,"domain":"augmentcode.com","page":"https://crawlcheck.io/registry/capabilities/augmentcode.com","row":{"domain":"augmentcode.com","host":"www.augmentcode.com","report_id":"zfe9pdq3fq","scanned_at":"2026-10-04T13:18:49.770Z","manifest":"16f6cb3fd58fafe744eb12e60f9717ab90c59eb8ceb214c7ec430767d921ce98","declared":1,"protocols":["mcp"],"by_policy":{"metadata":1},"verified":0,"mismatches":0,"self_scan":false},"policy_classes":[{"id":"public_read_only","safety":"read_only_public","label":"Public read-only","automatic":true,"invoke":"May be called without credentials. CrawlCheck calls it only to check the declaration: GET with no input, on the scanned origin."},{"id":"authenticated_read_only","safety":"read_only_authenticated","label":"Authenticated read-only","automatic":false,"invoke":"Never called by CrawlCheck. An agent needs the user's own credentials and consent."},{"id":"reversible_write","safety":"reversible_write","label":"Reversible write","automatic":false,"invoke":"Never invoked automatically. Needs the owner's written authorisation and a test account."},{"id":"irreversible_write","safety":"irreversible_write","label":"Irreversible write","automatic":false,"invoke":"Never invoked automatically. Deletes or changes something that cannot be undone."},{"id":"financial","safety":"financial","label":"Financial","automatic":false,"invoke":"Never invoked automatically. Moves money or creates a charge."},{"id":"external_communication","safety":"external_communication","label":"External communication","automatic":false,"invoke":"Never invoked automatically. Sends a message, email or notification to someone."},{"id":"identity","safety":"identity_or_account","label":"Identity and accounts","automatic":false,"invoke":"Never invoked automatically. Creates, signs in to or changes an account or credential."},{"id":"unknown","safety":"unknown","label":"Unknown","automatic":false,"invoke":"Never invoked. Its effect cannot be read from the declaration, so it is treated as the riskiest case."},{"id":"metadata","safety":"metadata_only","label":"Metadata","automatic":false,"invoke":"Nothing to invoke: a listing, a server card or a skill file, not an operation."}],"items":[{"capability_id":"cap1:a4435f696dbda8fef4b1","protocol":"mcp","operation":"server","method":null,"endpoint":"https://docs.augmentcode.com/mcp","declared":{"by":"https://www.augmentcode.com/.well-known/mcp/server-card.json","declaration_sha256":"f2ee8e4e6c4d6ec7b2ba1d85134894494cca0cb314690b6d17b001b8334eb3ca","authentication":"unknown","params_required":null,"media":null,"safety_class":"metadata_only","safety_basis":"a server declaration; its tools are listed only by the server itself (tools/list), which is not called"},"policy":{"id":"metadata","label":"Metadata","automatic":false,"invoke":"Nothing to invoke: a listing, a server card or a skill file, not an operation."},"observed":{"state":"not_attempted","verified":false,"at":null,"status":null,"content_type":null,"sha256":null,"mismatches":[],"not_attempted_because":"on another origin (docs.augmentcode.com): only the scanned origin is called"}}],"mismatches":[],"certificate":{"certificate_id":"ccap1:4f06cafd7be66792b432529f3a21e303f621b973d1a1049212c0f689bc2988f2","certificate":{"kind":"crawlcheck-capability-certificate","v":1,"subject":"www.augmentcode.com","domain":"augmentcode.com","record":"zfe9pdq3fq","report":"https://crawlcheck.io/r/zfe9pdq3fq","manifest_sha256":"16f6cb3fd58fafe744eb12e60f9717ab90c59eb8ceb214c7ec430767d921ce98","measured_at":"2026-10-04T13:18:49.770Z","verification_checked_at":"2026-10-04T13:18:54.132Z","verification_policy":"public GETs with no required input and one read-only MCP tool with no required input, on the scanned origin only; redirects recorded, not followed","invocation_rule":"capabilities are read from declarations only; nothing is invoked. Later verification may call read_only_public operations alone; every other class needs the site owner's authorisation and a test account, and unknown is never called","counts":{"declared":1,"verified":0,"mismatches":0},"items":[{"id":"cap1:a4435f696dbda8fef4b1","protocol":"mcp","operation":"server","method":null,"endpoint":"https://docs.augmentcode.com/mcp","declared_by_sha256":"f2ee8e4e6c4d6ec7b2ba1d85134894494cca0cb314690b6d17b001b8334eb3ca","safety_class":"metadata_only","policy":"metadata","observed":"not_attempted","status":null,"observed_sha256":null}],"mismatches":[]},"signature":{"alg":"Ed25519","kid":"hcIAczGf-8EFBnkunmZlvFWnD2nHHeHeC9cM4BTiBVo","certificate_sha256":"4f06cafd7be66792b432529f3a21e303f621b973d1a1049212c0f689bc2988f2","message":"the UTF-8 bytes of \"crawlcheck-capability-certificate-v1\\n\" followed by certificate_sha256 (hex), where certificate_sha256 = SHA-256 of the certificate as canonical JSON (keys sorted, no whitespace)","sig":"kH8EpryFjaZw3LjbmZ_OblHsdNPGHcGkqjHT22M0KeKOTkq-aDxMe7QQgGSAywjlBVjVxh5miHy6W0g-bLdBCg"},"issuer":{"name":"CrawlCheck observer","key":{"jwk":{"kty":"OKP","crv":"Ed25519","x":"Ny5tAiGdpyVWTm64G1_0g_sTo4ocLL7kqjZ6cK7G5KM"},"directory":"https://crawlcheck.io/.well-known/http-message-signatures-directory"}}},"verify":"https://crawlcheck.io/api/registry/capabilities/verify?domain=augmentcode.com"}