CrawlCheck

Registry · Capabilities · openrouter.ai

Capability registry

What openrouter.ai declares an agent can do

Measured 2026-10-04 05:02 UTC from the declarations the site publishes (record xhx3i158o2). Each capability is shown as declared, under the policy class that decides whether anything may call it, beside what a call observed.

22declared
0public read-only
0called and verified
0declared ≠ observed
mcpprotocols
External communication: 2Unknown: 20
External communication 2 · Unknown 20

Declared versus observed

CapabilityPolicy classDeclaredObserved
ping
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-models
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
get-model
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-model-endpoints
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-providers
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
get-endpoint-uptime-history
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-benchmarks
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-task-classifications
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-daily-model-rankings
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-app-rankings
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
list-presets
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
get-preset
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
get-credits
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
get-generation
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
send-feedback
mcp · https://mcp.openrouter.ai/mcp
External communication
never called automatically
its name contains “send”
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
search-docs
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
send-message
mcp · https://mcp.openrouter.ai/mcp
External communication
never called automatically
its name contains “send”
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
generate-image
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
transcribe-audio
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
generate-speech
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
spawn-ori-eval
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called
install-ori-harness
mcp · https://mcp.openrouter.ai/mcp
Unknown
never called automatically
its effect is not stated in the declaration
auth: unknown
not attempted
on another origin (mcp.openrouter.ai): only the scanned origin is called

Where the declaration and the call disagree

None: every capability that was called answered as declared.

Signed certificate

This page’s rows, signed by the observer’s Ed25519 key: every capability’s id, endpoint, safety class, policy class and observed state, the declaration hashes and the record’s sealed manifest. The certificate is derived from the record alone, so the same record always yields the same id.

certificate_id ccap1:01e516fcc30d26956600547fe7b027822be02c0e9b5e7cb7c3baaf38989e44be
alg Ed25519 · kid hcIAczGf-8EFBnkunmZlvFWnD2nHHeHeC9cM4BTiBVo
sig Bh6NGru1xJ3OePt140sGUYOdq_3cphAwbGHEslsTYepYPjxOGOBqm_ekdArNE6m-c5wmJAdcPGNwzIo_Q-K8CQ

The certificate as JSON · verify it now · the key directory · machine-readability certificate

To verify it yourself: SHA-256 the certificate object as canonical JSON (keys sorted, no whitespace); the hex digest must equal certificate_sha256 and the id; then check the Ed25519 signature over "crawlcheck-capability-certificate-v1\n" followed by that hex digest, with the key in the directory whose RFC 7638 thumbprint is the kid.

Policy classes

Policy classCalled automatically?Rule
Public read-only
public_read_only
yes, to verifyMay be called without credentials. CrawlCheck calls it only to check the declaration: GET with no input, on the scanned origin.
Authenticated read-only
authenticated_read_only
neverNever called by CrawlCheck. An agent needs the user's own credentials and consent.
Reversible write
reversible_write
neverNever invoked automatically. Needs the owner's written authorisation and a test account.
Irreversible write
irreversible_write
neverNever invoked automatically. Deletes or changes something that cannot be undone.
Financial
financial
neverNever invoked automatically. Moves money or creates a charge.
External communication
external_communication
neverNever invoked automatically. Sends a message, email or notification to someone.
Identity and accounts
identity
neverNever invoked automatically. Creates, signs in to or changes an account or credential.
Unknown
unknown
neverNever invoked. Its effect cannot be read from the declaration, so it is treated as the riskiest case.
Metadata
metadata
neverNothing to invoke: a listing, a server card or a skill file, not an operation.