Generated from the same registry used by the host permission gates. Surface digest: 95fdfcc6. These are registry tokens, not descriptor JSON fragments or proof of a live grant. Inspect host.capabilities.list() in your app for the installed host and your project's current posture.
Every wire method has a typed entry in ProjectRpcArgs and ProjectRpcResults. Use the public SDK wrappers shown in the reference. Framework helpers and local command registration do not all correspond to RPC methods.
| Method | Authority |
|---|---|
fs.read |
Reviewed request token: fs. Standing capability: fs. |
fs.readBinary |
Reviewed request token: fs. Standing capability: fs. |
fs.write |
Reviewed request token: fs. Standing capability: fs. |
fs.writeBinary |
Reviewed request token: fs. Standing capability: fs. |
fs.list |
Reviewed request token: fs. Standing capability: fs. |
fs.delete |
Reviewed request token: fs. Standing capability: fs. |
fs.external.list |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
fs.external.readText |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
fs.external.readBinary |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
fs.external.writeText |
Reviewed request token: folders.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
git.external.status |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
git.external.diffFile |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
git.external.log |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
git.external.show |
Reviewed request token: folders.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
shared.read |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
shared.write |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
shared.writeBinary |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
shared.put |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
shared.list |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
blobs.put |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
documents.toMarkdown |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
promptHistory.listSessions |
Reviewed request token: promptHistory.read. Standing capability: promptHistory.read. |
promptHistory.readSession |
Reviewed request token: promptHistory.read. Standing capability: promptHistory.read. |
cloud.summary |
Reviewed request token: cloud.read. Standing capability: cloud.read. |
cloud.chatSession |
Reviewed request token: cloud.chat. Standing capability: cloud.chat. |
cloud.claimChatHandle |
Reviewed request token: cloud.chat. Standing capability: cloud.chat. |
cloud.support.listIssues |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
cloud.support.getIssue |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
cloud.support.createIssue |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
cloud.support.markAffected |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
cloud.support.setIssueStatus |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
cloud.support.collectEvidence |
Reviewed request token: cloud.support. Standing capability: cloud.support. |
community.member.current |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.member.claim |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.projection.read |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.attachment.issue |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.message.create |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.message.edit |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.message.delete |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.reaction.set |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.search |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.issue.create |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.issue.affect |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.moderation.apply |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.settings.update |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.channel.create |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.channel.update |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.channel.reorder |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.channel.state |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.channel.list |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.operator.roster.list |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.owner.moderator.set |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.moderation.member-status.set |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
community.moderation.audit.list |
Reviewed request token: community.member. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
sites.cloudflarePages.deploy |
Reviewed request token: sites.deploy. Standing capability: sites.deploy. |
sites.status |
Reviewed request token: sites.deploy. Standing capability: sites.deploy. |
sites.review |
Reviewed request token: sites.deploy. Standing capability: sites.deploy. |
sites.deploy |
Reviewed request token: sites.deploy. Standing capability: sites.deploy. |
sites.deployments |
Reviewed request token: sites.deploy. Standing capability: sites.deploy. |
assistant.memory.overview |
Reviewed request token: assistant.memoryRead. Standing capability: assistant.memoryRead. |
assistant.memory.episodes |
Reviewed request token: assistant.memoryRead. Standing capability: assistant.memoryRead. |
assistant.memory.conclusions |
Reviewed request token: assistant.memoryRead. Standing capability: assistant.memoryRead. |
assistant.memory.search |
Reviewed request token: assistant.memoryRead. Standing capability: assistant.memoryRead. |
assistant.memory.recallTrace |
Reviewed request token: assistant.memoryRead. Standing capability: assistant.memoryRead. |
assistant.memory.editFile |
Reviewed request token: assistant.memoryWrite. Standing capability: assistant.memoryWrite. |
assistant.memory.deleteEpisode |
Reviewed request token: assistant.memoryWrite. Standing capability: assistant.memoryWrite. |
assistant.memory.deleteConclusion |
Reviewed request token: assistant.memoryWrite. Standing capability: assistant.memoryWrite. |
entities.listTypes |
Reviewed request token: entities.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.create |
Reviewed request token: entities.create. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.get |
Reviewed request token: entities.read. Authority depends on the arguments, resource, and caller; check the live capability surface. |
entities.query |
Reviewed request token: entities.query. Authority depends on the arguments, resource, and caller; check the live capability surface. |
entities.update |
Reviewed request token: entities.update. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.delete |
Reviewed request token: entities.delete. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.grant |
Reviewed request token: entities.grant. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.revoke |
Reviewed request token: entities.grant. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.watch |
Reviewed request token: entities.watch. Authority depends on the arguments, resource, and caller; check the live capability surface. |
entities.requestAccess |
Reviewed request token: entities.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
entities.content.append |
Reviewed request token: entities.content-write. Authority depends on the arguments, resource, and caller; check the live capability surface. |
entities.content.read |
Reviewed request token: entities.content-read. Authority depends on the arguments, resource, and caller; check the live capability surface. |
entities.content.redact |
Reviewed request token: entities.content-redact. Authority depends on the arguments, resource, and caller; check the live capability surface. |
session.user |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
session.signIn |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
session.signOut |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
secrets.get |
Reviewed request token: secrets.env. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
secrets.list |
Reviewed request token: secrets.env. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
systemAudio.start |
Reviewed request token: ui.system-audio. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
systemAudio.current |
Reviewed request token: ui.system-audio. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
systemAudio.read |
Reviewed request token: ui.system-audio. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
systemAudio.stop |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
ui.notify |
Reviewed request token: ui.notify. Standing capability: ui.notify. |
ui.surfaces.list |
Reviewed request token: ui.detached-surface. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
ui.surfaces.open |
Reviewed request token: ui.detached-surface. Standing capability: ui.detachedSurface. |
ui.surfaces.focus |
Reviewed request token: ui.detached-surface. Standing capability: ui.detachedSurface. |
ui.surfaces.close |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.navigate |
Reviewed request token: ui.navigate. Authority depends on the arguments, resource, and caller; check the live capability surface. |
host.openExternal |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.chrome.author |
Reviewed request token: chrome.author. Standing capability: chrome.author. |
host.projectIcons |
Reviewed request token: chrome.project-icons. Standing capability: projectIcons.manage. |
host.projectIconCatalog |
Reviewed request token: chrome.project-icon-catalog. Standing capability: projectIcons.manage. |
host.projectIconDelete |
Reviewed request token: chrome.project-icon-delete. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.hostSounds |
Reviewed request token: chrome.host-sounds. Standing capability: hostSounds.manage. |
host.hostSoundCatalog |
Reviewed request token: chrome.host-sound-catalog. Standing capability: hostSounds.manage. |
host.icons.create |
Reviewed request token: assets.publish. Standing capability: assets.publish. |
host.icons.cancelCreate |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.projects.list |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.spec.listSections |
Reviewed request token: spec.propose. Standing capability: spec.propose. |
host.spec.readSection |
Reviewed request token: spec.propose. Standing capability: spec.propose. |
host.capabilities.list |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
host.evaluations.listRuns |
Reviewed request token: evaluations.runs.read. Standing capability: evaluations.runs.read. |
host.evaluations.getRun |
Reviewed request token: evaluations.runs.read. Standing capability: evaluations.runs.read. |
host.evaluations.request |
Reviewed request token: evaluations.runs.request. Standing capability: evaluations.runs.request. |
host.evaluations.rerun |
Reviewed request token: evaluations.runs.rerun. Standing capability: evaluations.runs.rerun. |
host.evaluations.listWorkRoots |
Reviewed request token: evaluations.work.create. Standing capability: evaluations.work.create. |
host.evaluations.beginFolderSelection |
Reviewed request token: evaluations.work.create. Standing capability: evaluations.work.create. |
host.evaluations.createWork |
Reviewed request token: evaluations.work.create. Standing capability: evaluations.work.create. |
host.evaluations.startRemediation |
Reviewed request token: evaluations.remediation.start. Standing capability: evaluations.remediation.start. |
host.evaluations.getRemediation |
Reviewed request token: evaluations.remediation.start. Standing capability: evaluations.remediation.start. |
agent.spawn |
Reviewed request token: agent.dispatch. Authority depends on the arguments, resource, and caller; check the live capability surface. |
agent.stop |
Reviewed request token: agent.dispatch. Standing capability: agent.dispatch. |
agent.providers.list |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
agent.sessions.create |
Reviewed request token: agent.sessionControl. Authority depends on the arguments, resource, and caller; check the live capability surface. |
agent.sessions.listControlled |
Reviewed request token: agent.sessionRead. Standing capability: agent.sessionRead. |
agent.sessions.get |
Reviewed request token: agent.sessionRead. Standing capability: agent.sessionRead. |
agent.sessions.send |
Reviewed request token: agent.sessionControl. Standing capability: agent.sessionControl. |
agent.sessions.resume |
Reviewed request token: agent.sessionControl. Standing capability: agent.sessionControl. |
agent.sessions.cancel |
Reviewed request token: agent.sessionControl. Standing capability: agent.sessionControl. |
agent.sessions.events |
Reviewed request token: agent.sessionRead. Standing capability: agent.sessionRead. |
agent.runs |
Reviewed request token: agent.hostedRuns. Standing capability: agent.hostedRuns. |
agent.remote.targets.list |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.create |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.list |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.get |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.send |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.resume |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.cancel |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.sessions.events |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.git.status |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.git.diff |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.git.commit |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.results.list |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.results.apply |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
agent.remote.results.reject |
Reviewed request token: agent.remoteCoding. Standing capability: agent.remoteCoding. |
chats.list |
Reviewed request token: ui.chat-companion. Authority depends on the arguments, resource, and caller; check the live capability surface. |
chats.create |
Reviewed request token: ui.chat-companion. Authority depends on the arguments, resource, and caller; check the live capability surface. |
chats.open |
Reviewed request token: ui.chat-companion. Authority depends on the arguments, resource, and caller; check the live capability surface. |
git.status |
Reviewed request token: git.read. Standing capability: git.read. |
git.diff |
Reviewed request token: git.read. Standing capability: git.read. |
git.commit |
Reviewed request token: git.commit. Standing capability: git.commit. |
dialog.saveAs |
Reviewed request token: dialog.saveAs. Standing capability: dialog.saveAs. |
files.publish |
Reviewed request token: files.publish. Standing capability: files.publish. |
files.list |
Reviewed request token: files.publish. Standing capability: files.publish. |
files.pick |
Reviewed request token: files.pick. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.save |
Reviewed request token: files.pick. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.openWith |
Reviewed request token: files.edit. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.editSession.read |
Reviewed request token: files.edit. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.editSession.save |
Reviewed request token: files.edit. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.editSession.result |
Reviewed request token: files.edit. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
files.editSession.close |
Reviewed request token: files.edit. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
assets.publish |
Reviewed request token: assets.publish. Standing capability: assets.publish. |
assets.delete |
Reviewed request token: assets.publish. Standing capability: assets.publish. |
ai.complete |
Reviewed request token: ai.local. Standing capability: ai.local. |
ai.stream |
Reviewed request token: ai.local. Authority depends on the arguments, resource, and caller; check the live capability surface. |
connectors.execute |
No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
capability.invoke |
Reviewed request token: capability.invoke. Standing capability: capability.invoke. |
connectors.google.calendar.listAccounts |
Reviewed request token: connectors.google.calendar.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.ensureAccess |
Reviewed request token: connectors.google.calendar.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.listCalendars |
Reviewed request token: connectors.google.calendar.calendars.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.freebusy |
Reviewed request token: connectors.google.calendar.freebusy.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.listEvents |
Reviewed request token: connectors.google.calendar.events.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.createEvent |
Reviewed request token: connectors.google.calendar.events.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.updateEvent |
Reviewed request token: connectors.google.calendar.events.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.calendar.deleteEvent |
Reviewed request token: connectors.google.calendar.events.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.listAccounts |
Reviewed request token: connectors.google.mail.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.ensureAccess |
Reviewed request token: connectors.google.mail.any. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.listLabels |
Reviewed request token: connectors.google.mail.labels.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.listMessages |
Reviewed request token: connectors.google.mail.messages.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.getMessage |
Reviewed request token: connectors.google.mail.messages.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.getThread |
Reviewed request token: connectors.google.mail.messages.read. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.modifyMessage |
Reviewed request token: connectors.google.mail.messages.modify. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.createDraft |
Reviewed request token: connectors.google.mail.drafts.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.updateDraft |
Reviewed request token: connectors.google.mail.drafts.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.deleteDraft |
Reviewed request token: connectors.google.mail.drafts.write. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
connectors.google.mail.send |
Reviewed request token: connectors.google.mail.messages.send. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
A grant token describes authority, not whether an operation is read-only or safe to retry. Read the method's comments and its task bundle before acting. Methods without a documented idempotency contract must not be automatically retried after an uncertain outcome. A timeout does not prove that the host cancelled an effect. Only use a cancellation API or signal when that method exposes one.
Handle ProjectRpcError.code and structured details; do not infer policy from its message. outside-reviewed-eligibility requires a host-reviewed access change; a refusal never authorizes a workaround. After permission changes, re-check the capability surface before a deliberate retry.
The task bundles document the concrete effects, retry behavior, cancellation, and verification for Files, Entities, Calendar, and Commands.