> ISPO SDK documentation. [HTML](https://ispo.ai/docs/documents/Method_authority.html) · [Documentation index](https://ispo.ai/docs/llms.txt)

# <a id="method-authority"></a>Method authority

Generated from the same registry used by the host permission gates. Surface digest: `95fdfcc6`. These are registry tokens, not descriptor JSON fragments or proof of a live grant. Inspect `host.capabilities.list()` in your app for the installed host and your project's current posture.

## <a id="inputs-and-results"></a>Inputs and results

Every wire method has a typed entry in [ProjectRpcArgs](../interfaces/core.ProjectRpcArgs.md) and [ProjectRpcResults](../interfaces/core.ProjectRpcResults.md). Use the public SDK wrappers shown in the reference. Framework helpers and local command registration do not all correspond to RPC methods.

## <a id="declarations-and-grants"></a>Declarations and grants

| Method | Authority |
| --- | --- |
| [`fs.read`](../variables/core.fs.md#read) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.readBinary`](../variables/core.fs.md#readbinary) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.write`](../variables/core.fs.md#write) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.writeBinary`](../variables/core.fs.md#writebinary) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.list`](../variables/core.fs.md#list) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.delete`](../variables/core.fs.md#delete) | Reviewed request token: `fs`. Standing capability: `fs`. |
| [`fs.external.list`](../interfaces/core.ProjectRpcArgs.md#fsexternallist) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`fs.external.readText`](../interfaces/core.ProjectRpcArgs.md#fsexternalreadtext) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`fs.external.readBinary`](../interfaces/core.ProjectRpcArgs.md#fsexternalreadbinary) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`fs.external.writeText`](../interfaces/core.ProjectRpcArgs.md#fsexternalwritetext) | Reviewed request token: `folders.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`git.external.status`](../interfaces/core.ProjectRpcArgs.md#gitexternalstatus) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`git.external.diffFile`](../interfaces/core.ProjectRpcArgs.md#gitexternaldifffile) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`git.external.log`](../interfaces/core.ProjectRpcArgs.md#gitexternallog) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`git.external.show`](../interfaces/core.ProjectRpcArgs.md#gitexternalshow) | Reviewed request token: `folders.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`shared.read`](../variables/core.shared.md#read) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`shared.write`](../variables/core.shared.md#write) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`shared.writeBinary`](../variables/core.shared.md#writebinary) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`shared.put`](../variables/core.shared.md#put) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`shared.list`](../variables/core.shared.md#list) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`blobs.put`](../variables/core.blobs.md#put) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`documents.toMarkdown`](../variables/core.documents.md#tomarkdown) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`promptHistory.listSessions`](../variables/core.promptHistory.md#listsessions) | Reviewed request token: `promptHistory.read`. Standing capability: `promptHistory.read`. |
| [`promptHistory.readSession`](../variables/core.promptHistory.md#readsession) | Reviewed request token: `promptHistory.read`. Standing capability: `promptHistory.read`. |
| [`cloud.summary`](../variables/core.cloud.md#summary) | Reviewed request token: `cloud.read`. Standing capability: `cloud.read`. |
| [`cloud.chatSession`](../variables/core.cloud.md#chatsession) | Reviewed request token: `cloud.chat`. Standing capability: `cloud.chat`. |
| [`cloud.claimChatHandle`](../variables/core.cloud.md#claimchathandle) | Reviewed request token: `cloud.chat`. Standing capability: `cloud.chat`. |
| [`cloud.support.listIssues`](../interfaces/core.ProjectRpcArgs.md#cloudsupportlistissues) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`cloud.support.getIssue`](../interfaces/core.ProjectRpcArgs.md#cloudsupportgetissue) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`cloud.support.createIssue`](../interfaces/core.ProjectRpcArgs.md#cloudsupportcreateissue) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`cloud.support.markAffected`](../interfaces/core.ProjectRpcArgs.md#cloudsupportmarkaffected) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`cloud.support.setIssueStatus`](../interfaces/core.ProjectRpcArgs.md#cloudsupportsetissuestatus) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`cloud.support.collectEvidence`](../interfaces/core.ProjectRpcArgs.md#cloudsupportcollectevidence) | Reviewed request token: `cloud.support`. Standing capability: `cloud.support`. |
| [`community.member.current`](../interfaces/core.ProjectRpcArgs.md#communitymembercurrent) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.member.claim`](../interfaces/core.ProjectRpcArgs.md#communitymemberclaim) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.projection.read`](../interfaces/core.ProjectRpcArgs.md#communityprojectionread) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.attachment.issue`](../interfaces/core.ProjectRpcArgs.md#communityattachmentissue) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.message.create`](../interfaces/core.ProjectRpcArgs.md#communitymessagecreate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.message.edit`](../interfaces/core.ProjectRpcArgs.md#communitymessageedit) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.message.delete`](../interfaces/core.ProjectRpcArgs.md#communitymessagedelete) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.reaction.set`](../interfaces/core.ProjectRpcArgs.md#communityreactionset) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.search`](../variables/core.community.md#search) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.issue.create`](../interfaces/core.ProjectRpcArgs.md#communityissuecreate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.issue.affect`](../interfaces/core.ProjectRpcArgs.md#communityissueaffect) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.moderation.apply`](../interfaces/core.ProjectRpcArgs.md#communitymoderationapply) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.settings.update`](../interfaces/core.ProjectRpcArgs.md#communityownersettingsupdate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.channel.create`](../interfaces/core.ProjectRpcArgs.md#communityownerchannelcreate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.channel.update`](../interfaces/core.ProjectRpcArgs.md#communityownerchannelupdate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.channel.reorder`](../interfaces/core.ProjectRpcArgs.md#communityownerchannelreorder) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.channel.state`](../interfaces/core.ProjectRpcArgs.md#communityownerchannelstate) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.channel.list`](../interfaces/core.ProjectRpcArgs.md#communityownerchannellist) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.operator.roster.list`](../interfaces/core.ProjectRpcArgs.md#communityoperatorrosterlist) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.owner.moderator.set`](../interfaces/core.ProjectRpcArgs.md#communityownermoderatorset) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.moderation.member-status.set`](../interfaces/core.ProjectRpcArgs.md#communitymoderationmember-statusset) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`community.moderation.audit.list`](../interfaces/core.ProjectRpcArgs.md#communitymoderationauditlist) | Reviewed request token: `community.member`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`sites.cloudflarePages.deploy`](../interfaces/core.ProjectRpcArgs.md#sitescloudflarepagesdeploy) | Reviewed request token: `sites.deploy`. Standing capability: `sites.deploy`. |
| [`sites.status`](../variables/core.sites.md#status) | Reviewed request token: `sites.deploy`. Standing capability: `sites.deploy`. |
| [`sites.review`](../variables/core.sites.md#review) | Reviewed request token: `sites.deploy`. Standing capability: `sites.deploy`. |
| [`sites.deploy`](../variables/core.sites.md#deploy) | Reviewed request token: `sites.deploy`. Standing capability: `sites.deploy`. |
| [`sites.deployments`](../variables/core.sites.md#deployments) | Reviewed request token: `sites.deploy`. Standing capability: `sites.deploy`. |
| [`assistant.memory.overview`](../interfaces/core.AssistantMemoryApi.md#overview) | Reviewed request token: `assistant.memoryRead`. Standing capability: `assistant.memoryRead`. |
| [`assistant.memory.episodes`](../interfaces/core.AssistantMemoryApi.md#episodes) | Reviewed request token: `assistant.memoryRead`. Standing capability: `assistant.memoryRead`. |
| [`assistant.memory.conclusions`](../interfaces/core.AssistantMemoryApi.md#conclusions) | Reviewed request token: `assistant.memoryRead`. Standing capability: `assistant.memoryRead`. |
| [`assistant.memory.search`](../interfaces/core.AssistantMemoryApi.md#search) | Reviewed request token: `assistant.memoryRead`. Standing capability: `assistant.memoryRead`. |
| [`assistant.memory.recallTrace`](../interfaces/core.AssistantMemoryApi.md#recalltrace) | Reviewed request token: `assistant.memoryRead`. Standing capability: `assistant.memoryRead`. |
| [`assistant.memory.editFile`](../interfaces/core.AssistantMemoryApi.md#editfile) | Reviewed request token: `assistant.memoryWrite`. Standing capability: `assistant.memoryWrite`. |
| [`assistant.memory.deleteEpisode`](../interfaces/core.AssistantMemoryApi.md#deleteepisode) | Reviewed request token: `assistant.memoryWrite`. Standing capability: `assistant.memoryWrite`. |
| [`assistant.memory.deleteConclusion`](../interfaces/core.AssistantMemoryApi.md#deleteconclusion) | Reviewed request token: `assistant.memoryWrite`. Standing capability: `assistant.memoryWrite`. |
| [`entities.listTypes`](../variables/core.entities.md#listtypes) | Reviewed request token: `entities.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.create`](../variables/core.entities.md#create) | Reviewed request token: `entities.create`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.get`](../variables/core.entities.md#get) | Reviewed request token: `entities.read`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`entities.query`](../variables/core.entities.md#query) | Reviewed request token: `entities.query`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`entities.update`](../variables/core.entities.md#update) | Reviewed request token: `entities.update`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.delete`](../variables/core.entities.md#delete) | Reviewed request token: `entities.delete`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.grant`](../variables/core.entities.md#grant) | Reviewed request token: `entities.grant`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.revoke`](../variables/core.entities.md#revoke) | Reviewed request token: `entities.grant`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.watch`](../variables/core.entities.md#watch) | Reviewed request token: `entities.watch`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`entities.requestAccess`](../variables/core.entities.md#requestaccess) | Reviewed request token: `entities.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`entities.content.append`](../interfaces/core.ProjectRpcArgs.md#entitiescontentappend) | Reviewed request token: `entities.content-write`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`entities.content.read`](../interfaces/core.ProjectRpcArgs.md#entitiescontentread) | Reviewed request token: `entities.content-read`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`entities.content.redact`](../interfaces/core.ProjectRpcArgs.md#entitiescontentredact) | Reviewed request token: `entities.content-redact`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`session.user`](../variables/core.session.md#user) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`session.signIn`](../variables/core.session.md#signin) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`session.signOut`](../variables/core.session.md#signout) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`secrets.get`](../interfaces/core.SecretsApi.md#get) | Reviewed request token: `secrets.env`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`secrets.list`](../interfaces/core.SecretsApi.md#list) | Reviewed request token: `secrets.env`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`systemAudio.start`](../interfaces/core.SystemAudioApi.md#start) | Reviewed request token: `ui.system-audio`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`systemAudio.current`](../interfaces/core.SystemAudioApi.md#current) | Reviewed request token: `ui.system-audio`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`systemAudio.read`](../interfaces/core.SystemAudioApi.md#read) | Reviewed request token: `ui.system-audio`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`systemAudio.stop`](../interfaces/core.SystemAudioApi.md#stop) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`ui.notify`](../interfaces/core.UiApi.md#notify) | Reviewed request token: `ui.notify`. Standing capability: `ui.notify`. |
| [`ui.surfaces.list`](../interfaces/core.ProjectSurfacesApi.md#list) | Reviewed request token: `ui.detached-surface`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`ui.surfaces.open`](../interfaces/core.ProjectSurfacesApi.md#open) | Reviewed request token: `ui.detached-surface`. Standing capability: `ui.detachedSurface`. |
| [`ui.surfaces.focus`](../interfaces/core.ProjectSurfacesApi.md#focus) | Reviewed request token: `ui.detached-surface`. Standing capability: `ui.detachedSurface`. |
| [`ui.surfaces.close`](../interfaces/core.ProjectSurfacesApi.md#close) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.navigate`](../interfaces/core.HostApi.md#navigate) | Reviewed request token: `ui.navigate`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`host.openExternal`](../interfaces/core.HostApi.md#openexternal) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.chrome.author`](../interfaces/core.ProjectRpcArgs.md#hostchromeauthor) | Reviewed request token: `chrome.author`. Standing capability: `chrome.author`. |
| [`host.projectIcons`](../interfaces/core.HostApi.md#projecticons) | Reviewed request token: `chrome.project-icons`. Standing capability: `projectIcons.manage`. |
| [`host.projectIconCatalog`](../interfaces/core.ProjectRpcArgs.md#hostprojecticoncatalog) | Reviewed request token: `chrome.project-icon-catalog`. Standing capability: `projectIcons.manage`. |
| [`host.projectIconDelete`](../interfaces/core.ProjectRpcArgs.md#hostprojecticondelete) | Reviewed request token: `chrome.project-icon-delete`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.hostSounds`](../interfaces/core.ProjectRpcArgs.md#hosthostsounds) | Reviewed request token: `chrome.host-sounds`. Standing capability: `hostSounds.manage`. |
| [`host.hostSoundCatalog`](../interfaces/core.ProjectRpcArgs.md#hosthostsoundcatalog) | Reviewed request token: `chrome.host-sound-catalog`. Standing capability: `hostSounds.manage`. |
| [`host.icons.create`](../interfaces/core.ProjectRpcArgs.md#hosticonscreate) | Reviewed request token: `assets.publish`. Standing capability: `assets.publish`. |
| [`host.icons.cancelCreate`](../interfaces/core.ProjectRpcArgs.md#hosticonscancelcreate) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.projects.list`](../interfaces/core.ProjectRpcArgs.md#hostprojectslist) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.spec.listSections`](../interfaces/core.ProjectRpcArgs.md#hostspeclistsections) | Reviewed request token: `spec.propose`. Standing capability: `spec.propose`. |
| [`host.spec.readSection`](../interfaces/core.ProjectRpcArgs.md#hostspecreadsection) | Reviewed request token: `spec.propose`. Standing capability: `spec.propose`. |
| [`host.capabilities.list`](../interfaces/core.ProjectRpcArgs.md#hostcapabilitieslist) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`host.evaluations.listRuns`](../interfaces/core.ProjectRpcArgs.md#hostevaluationslistruns) | Reviewed request token: `evaluations.runs.read`. Standing capability: `evaluations.runs.read`. |
| [`host.evaluations.getRun`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsgetrun) | Reviewed request token: `evaluations.runs.read`. Standing capability: `evaluations.runs.read`. |
| [`host.evaluations.request`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsrequest) | Reviewed request token: `evaluations.runs.request`. Standing capability: `evaluations.runs.request`. |
| [`host.evaluations.rerun`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsrerun) | Reviewed request token: `evaluations.runs.rerun`. Standing capability: `evaluations.runs.rerun`. |
| [`host.evaluations.listWorkRoots`](../interfaces/core.ProjectRpcArgs.md#hostevaluationslistworkroots) | Reviewed request token: `evaluations.work.create`. Standing capability: `evaluations.work.create`. |
| [`host.evaluations.beginFolderSelection`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsbeginfolderselection) | Reviewed request token: `evaluations.work.create`. Standing capability: `evaluations.work.create`. |
| [`host.evaluations.createWork`](../interfaces/core.ProjectRpcArgs.md#hostevaluationscreatework) | Reviewed request token: `evaluations.work.create`. Standing capability: `evaluations.work.create`. |
| [`host.evaluations.startRemediation`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsstartremediation) | Reviewed request token: `evaluations.remediation.start`. Standing capability: `evaluations.remediation.start`. |
| [`host.evaluations.getRemediation`](../interfaces/core.ProjectRpcArgs.md#hostevaluationsgetremediation) | Reviewed request token: `evaluations.remediation.start`. Standing capability: `evaluations.remediation.start`. |
| [`agent.spawn`](../interfaces/core.AgentApi.md#spawn) | Reviewed request token: `agent.dispatch`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`agent.stop`](../interfaces/core.AgentApi.md#stop) | Reviewed request token: `agent.dispatch`. Standing capability: `agent.dispatch`. |
| [`agent.providers.list`](../interfaces/core.AgentProvidersApi.md#list) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`agent.sessions.create`](../interfaces/core.AgentSessionsApi.md#create) | Reviewed request token: `agent.sessionControl`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`agent.sessions.listControlled`](../interfaces/core.AgentSessionsApi.md#listcontrolled) | Reviewed request token: `agent.sessionRead`. Standing capability: `agent.sessionRead`. |
| [`agent.sessions.get`](../interfaces/core.AgentSessionsApi.md#get) | Reviewed request token: `agent.sessionRead`. Standing capability: `agent.sessionRead`. |
| [`agent.sessions.send`](../interfaces/core.AgentSessionsApi.md#send) | Reviewed request token: `agent.sessionControl`. Standing capability: `agent.sessionControl`. |
| [`agent.sessions.resume`](../interfaces/core.AgentSessionsApi.md#resume) | Reviewed request token: `agent.sessionControl`. Standing capability: `agent.sessionControl`. |
| [`agent.sessions.cancel`](../interfaces/core.AgentSessionsApi.md#cancel) | Reviewed request token: `agent.sessionControl`. Standing capability: `agent.sessionControl`. |
| [`agent.sessions.events`](../interfaces/core.AgentSessionsApi.md#events) | Reviewed request token: `agent.sessionRead`. Standing capability: `agent.sessionRead`. |
| [`agent.runs`](../interfaces/core.AgentApi.md#runs) | Reviewed request token: `agent.hostedRuns`. Standing capability: `agent.hostedRuns`. |
| [`agent.remote.targets.list`](../interfaces/core.RemoteCodingTargetsApi.md#list) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.create`](../interfaces/core.RemoteCodingSessionsApi.md#create) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.list`](../interfaces/core.RemoteCodingSessionsApi.md#list) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.get`](../interfaces/core.RemoteCodingSessionsApi.md#get) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.send`](../interfaces/core.RemoteCodingSessionsApi.md#send) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.resume`](../interfaces/core.RemoteCodingSessionsApi.md#resume) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.cancel`](../interfaces/core.RemoteCodingSessionsApi.md#cancel) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.sessions.events`](../interfaces/core.RemoteCodingSessionsApi.md#events) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.git.status`](../interfaces/core.RemoteCodingGitApi.md#status) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.git.diff`](../interfaces/core.RemoteCodingGitApi.md#diff) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.git.commit`](../interfaces/core.RemoteCodingGitApi.md#commit) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.results.list`](../interfaces/core.RemoteCodingResultsApi.md#list) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.results.apply`](../interfaces/core.RemoteCodingResultsApi.md#apply) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`agent.remote.results.reject`](../interfaces/core.RemoteCodingResultsApi.md#reject) | Reviewed request token: `agent.remoteCoding`. Standing capability: `agent.remoteCoding`. |
| [`chats.list`](../interfaces/core.ChatsApi.md#list) | Reviewed request token: `ui.chat-companion`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`chats.create`](../interfaces/core.ChatsApi.md#create) | Reviewed request token: `ui.chat-companion`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`chats.open`](../interfaces/core.ChatsApi.md#open) | Reviewed request token: `ui.chat-companion`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`git.status`](../variables/core.git.md#status) | Reviewed request token: `git.read`. Standing capability: `git.read`. |
| [`git.diff`](../variables/core.git.md#diff) | Reviewed request token: `git.read`. Standing capability: `git.read`. |
| [`git.commit`](../variables/core.git.md#commit) | Reviewed request token: `git.commit`. Standing capability: `git.commit`. |
| [`dialog.saveAs`](../interfaces/core.DialogApi.md#saveas) | Reviewed request token: `dialog.saveAs`. Standing capability: `dialog.saveAs`. |
| [`files.publish`](../interfaces/core.FilesApi.md#publish) | Reviewed request token: `files.publish`. Standing capability: `files.publish`. |
| [`files.list`](../interfaces/core.FilesApi.md#list) | Reviewed request token: `files.publish`. Standing capability: `files.publish`. |
| [`files.pick`](../interfaces/core.FilesApi.md#pick) | Reviewed request token: `files.pick`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.save`](../interfaces/core.FilesApi.md#save) | Reviewed request token: `files.pick`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.openWith`](../interfaces/core.FilesApi.md#openwith) | Reviewed request token: `files.edit`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.editSession.read`](../interfaces/core.FilesEditSessionApi.md#read) | Reviewed request token: `files.edit`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.editSession.save`](../interfaces/core.FilesEditSessionApi.md#save) | Reviewed request token: `files.edit`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.editSession.result`](../interfaces/core.FilesEditSessionApi.md#result) | Reviewed request token: `files.edit`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`files.editSession.close`](../interfaces/core.FilesEditSessionApi.md#close) | Reviewed request token: `files.edit`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`assets.publish`](../variables/core.assets.md#publish) | Reviewed request token: `assets.publish`. Standing capability: `assets.publish`. |
| [`assets.delete`](../variables/core.assets.md#delete) | Reviewed request token: `assets.publish`. Standing capability: `assets.publish`. |
| [`ai.complete`](../interfaces/core.AiApi.md#complete) | Reviewed request token: `ai.local`. Standing capability: `ai.local`. |
| [`ai.stream`](../interfaces/core.AiApi.md#stream) | Reviewed request token: `ai.local`. Authority depends on the arguments, resource, and caller; check the live capability surface. |
| [`connectors.execute`](../variables/core.connectors.md#execute) | No static request token. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`capability.invoke`](../interfaces/core.CapabilityApi.md#invoke) | Reviewed request token: `capability.invoke`. Standing capability: `capability.invoke`. |
| [`connectors.google.calendar.listAccounts`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarlistaccounts) | Reviewed request token: `connectors.google.calendar.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.ensureAccess`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarensureaccess) | Reviewed request token: `connectors.google.calendar.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.listCalendars`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarlistcalendars) | Reviewed request token: `connectors.google.calendar.calendars.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.freebusy`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarfreebusy) | Reviewed request token: `connectors.google.calendar.freebusy.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.listEvents`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarlistevents) | Reviewed request token: `connectors.google.calendar.events.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.createEvent`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarcreateevent) | Reviewed request token: `connectors.google.calendar.events.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.updateEvent`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendarupdateevent) | Reviewed request token: `connectors.google.calendar.events.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.calendar.deleteEvent`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglecalendardeleteevent) | Reviewed request token: `connectors.google.calendar.events.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.listAccounts`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemaillistaccounts) | Reviewed request token: `connectors.google.mail.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.ensureAccess`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailensureaccess) | Reviewed request token: `connectors.google.mail.any`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.listLabels`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemaillistlabels) | Reviewed request token: `connectors.google.mail.labels.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.listMessages`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemaillistmessages) | Reviewed request token: `connectors.google.mail.messages.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.getMessage`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailgetmessage) | Reviewed request token: `connectors.google.mail.messages.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.getThread`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailgetthread) | Reviewed request token: `connectors.google.mail.messages.read`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.modifyMessage`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailmodifymessage) | Reviewed request token: `connectors.google.mail.messages.modify`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.createDraft`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailcreatedraft) | Reviewed request token: `connectors.google.mail.drafts.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.updateDraft`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailupdatedraft) | Reviewed request token: `connectors.google.mail.drafts.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.deleteDraft`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemaildeletedraft) | Reviewed request token: `connectors.google.mail.drafts.write`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |
| [`connectors.google.mail.send`](../interfaces/core.ProjectRpcArgs.md#connectorsgooglemailsend) | Reviewed request token: `connectors.google.mail.messages.send`. No static standing capability. Resource bindings, identity checks, or interactive consent may still apply. |

## <a id="effects-cancellation-and-recovery"></a>Effects, cancellation, and recovery

A grant token describes authority, not whether an operation is read-only or safe to retry. Read the method's comments and its task bundle before acting. Methods without a documented idempotency contract must not be automatically retried after an uncertain outcome. A timeout does not prove that the host cancelled an effect. Only use a cancellation API or signal when that method exposes one.

Handle `ProjectRpcError.code` and structured details; do not infer policy from its message. `outside-reviewed-eligibility` requires a host-reviewed access change; a refusal never authorizes a workaround. After permission changes, re-check the capability surface before a deliberate retry.

The task bundles document the concrete effects, retry behavior, cancellation, and verification for [Files](/docs/documents/Publish_a_file.md), [Entities](/docs/documents/Query_entities.md), [Calendar](/docs/documents/Use_Calendar.md), and [Commands](/docs/documents/Expose_a_command.md).
