Expand description
Sandbox capabilities: what the manager mints and the agent verifies.
Lives here because both sides need identical rules, and a mismatch between minting and verification is a security bug that only shows up as “it works” until it does not.
A capability is scoped to one sandbox and one operation class. Provider ids and hostnames are guessable, so neither is authorisation.
Structs§
- Sandbox
Capability Claims - The claims an agent checks before doing anything.
- Sandbox
Session Identity - What the agent knows about itself, established at sandbox start.
Enums§
- Sandbox
Operation Class - What a capability permits. Deliberately coarse: a class, not a method list, so adding a method cannot silently widen an already-minted capability.