This appendix is non-normative.
Agent manifest
A coding assistant agent declares the following manifest:Agent startup
1
Manifest received
The Agent Runtime receives the manifest and validates its structure.
2
Capability review
The Agent Runtime validates the declared capability IDs. Runtime configuration and the Action Plane may use those declarations for local binding, user review, and audit.
3
Loop begins
The agent loop begins. No MCP server availability check is required.
Successful operation
The agent decides to read a file. It issues an MCP request through the plane boundary: Request (from agent, through enforcement point, to filesystem server):Authorization denied
The agent attempts to write to a protected path: Request:/etc/. The enforcement point returns:
Response: