ARSENAL
ARSENAL
Agent Capability Tokens & Credential Proxy · Credentials never touch the agent.
Credentials never touch the agent.
Agent Capability Tokens (ACTs), 11-step proxy with SSRF guard, hash-chained audit, HITL consent.
| Field | Value |
|---|---|
| Acronym | ARSENAL |
| Full name | Agent Capability Tokens & Credential Proxy |
| Plane | I — Identity |
| Kind | Adapter · External Standard |
| City role | Treasury vault |
| Crate | external |
| Status | Implemented · production-grade. |
What this is
Agent Capability Tokens (ACTs), 11-step proxy with SSRF guard, hash-chained audit, HITL consent.
Sub-docs
Operations
3 operations — request shape, capability.
CLI
`map invoke` recipes for every operation.
SDKs
Rust, TypeScript, and the raw HTTP wire.
Schemas
Request and response JSON schemas.
Governance
Refusal posture, dissent, audit footprint.
Metering
How MEAL meters this protocol.
Internals
Crate path, key types, adjacent protocols.
Adjacent in the mesh
| Relation | Members |
|---|---|
| Consults | — |
| Records to | MAX · MOTET |
| Subject to | MAXIM · MACE (for charter-level decisions) |
| Settled via | MEAL · MADE (for cross-org) |