infoUNDECLARED_CAPABILITY_OBSERVED
Undeclared trust capability was observed
https://evals.platphormnews.com/.well-known/trust.json
GET https://evals.platphormnews.com/.well-known/trust.json
HTTP 200
Content-Type: application/json
52 ms
Digest: sha256:7adccfa39f0363989ebef21d1bb383a7f4b395276a75062e3b07cf279b8aa20a
Preview: {"schema_version":"1.0","service":"platphorm-evals","auth":{"sharedKeyName":"PLATPHORM_API_KEY","acceptedHeaders":["Authorization: [REDACTED] $PLATPHORM_API_KEY","X-PlatPhorm-API-Key: [REDACTED],"publicAccess":{"enabled":true,"corsAllowedOrigins":["https://platphormnews.com","https://*.platphormnews.com"],"scope":"All public-safe read, discovery, dashboard, documentation, registry summary, health, feed, sitemap, OpenAPI, llms, MCP descriptor, and trust-policy surfaces are intentionally public."},"publicReadAccess":["all public-safe GET routes","dashboard summaries","health summaries","discovery files","MCP descriptor","registry services","documentation","feed and sitemap outputs"],"protectedActions":["registry sync","target imports","eval suite creation","eval run triggers","grader creation","release gate creation","regression creation","artifact publishing"],"trustedDomains":["platphormnews.com","*.platphormnews.com"],"dataExposureBoundaries":{"public":"read-only operational summaries, persisted eval summaries, registry summaries, docs, and discovery metadata","protected":"mutation actions and detailed operator workflows","secrets":"PLATPHORM_API_KEY is never returned in responses, discovery files, logs, traces, or screenshots","ja4Digest":"raw x-vercel-ja4-digest is fingerprint-adjacent metadata and is hashed or redacted before public display"},"policy":"Web dashboard, public-safe discovery, browser-based operations, trusted-domain discovery, standard route compliance, Vercel metadata capture, trace inspection, and agentic workflow discovery are intentionally supported for public read-only debugging and operator workflows. Mutating, administrative, ingestion, replay, fork, remediation, deployment, sync, test-triggering, reporting, and write actions require PLATPHORM_API_KEY.","provenancePolicy":"PlatPhorm Evals distinguishes public evaluation evidence fingerprints from user, browser, device, visitor, behavioral, request-header, and private workflow fingerprints. Public artifact fingerprints may be used f