- 01
ingest live OpenAPI and discover approved runtime, validation, capability, network, node, and resource profiles
- 02
create a private DRAFT from an immutable source artifact, exact digest, closed manifest, declared capabilities, and bounded resource policy
- 03
revise only the editable draft and invalidate any validation derived from changed commitments
- 04
validate the exact source, manifest, dependencies, schemas, runtime images, capabilities, policy, reproducibility, and sandbox behavior
- 05
publish one validated package version immutably at the admitted visibility
- 06
prepare an isolated TEST or PRODUCTION deployment whose limits only narrow package and platform policy
- 07
validate invocation inputs before executing and obtain fresh owner-issued authority for any external domain effect
- 08
create and govern typed triggers separately from deployment and invocation
- 09
verify package, build, input, output, runtime, node, resource, signature, and any separate domain receipt commitments together