Work that ends when you said
A grant carries an expiry and can be revoked earlier. Check: GET /v1/grants/status names the tools and the expiry.
Product 02
AFA keeps a signed, ordered record of what an agent did and was allowed to do. You check it on your machine, without asking us.
AFA signs each envelope and preserves event order. That exposes a changed record, an expanded scope, and approval added after an action. For disputed work the same record can support chronology; it does not decide who owns the work.
Current foundation: SHA-256 digests and Ed25519 signatures. Integrity is not truth. Governance is not a sandbox.
Read the security and privacy modelAFA is designed to help teams run longer tasks, control spending, coordinate more agents, and review what happened afterward. Each agent can have a clear limit, stop point, and human owner. These are practical examples, not measured gains. We have not measured a capacity multiplier.
A grant carries an expiry and can be revoked earlier. Check: GET /v1/grants/status names the tools and the expiry.
On a supported host, a rule can hold model spending for a person. Usage is counted per key, not billed. Check: GET /v1/usage/summary.
AFA records which child agent started under which parent. Call budgets and parent containment are checked at the gate. Per-child file-path scope is still open.
Signed summaries preserve the order of work across agents. They show what ran and under which grant. They do not say the action was right.
When several agents work at once, AFA helps preserve who started each branch, what it was allowed to reach, and where a person must step in.
AFA wraps a task in a signed envelope: owner, purpose digest, scope, action class, time mode, and parent. As work branches, envelope changes can be compared. On a supported host, an explicit boundary crossing can pause or stop before the tool runs.
AFA surfaces structural drift. It does not infer intent from private reasoning, and broad limits still permit broad behavior.
sha256:7c1d...a8sha256:883e...19sha256:0ad4...72The hosted API is live. Connect an agent host over MCP, call the REST API from your own code, or open the console. All three read and write the same record on one account, and the docs cover each one, limits first.
Bring AFA action checks and signed records into a compatible agent host over the hosted endpoint. A tool call is one HTTPS request; nothing runs offline.
LivePer-machine keys, signed records, sub-agent grants, delegation tokens, notifications and usage counts. Verification runs without our servers.
Sign in for the docsEmail sign-in, keys, records, grants and notices for one account. It shows what the API knows; nothing is inferred.
Sign inNot offered. There is no client library to install and no portable evidence file to download. A private client for one integration can be discussed on request.
Hosted API Live
Sign in, create a key for one machine, write a record and check it. Before relying on anything, read the limits: the record holds hashes, not payloads; it detects changes, it does not prevent them; a host must deliver the action to the gate.
There is no client library to install and no evidence file to download. A private client for one integration can be discussed.
Seats are limited. Seats are bounded by review capacity, not by infrastructure.