Evidence
observed · not disputed
Coverage
complete · 16/16 graded0/5 barrier checks verified
Freshness
fresh
Last tested
Revision
sha256:c0bcfd7a8e70…

Agent report card

Can an agent use Twilio Messaging API through Message operations?

Grade C+: Only some material eligibility conditions are decidable before commitment.

twilio / active

Agent ReadinessC+Limited

Five-stage assessment

Where agent autonomy holds and where it breaks

Five states · each from its own evidence · lifecycle order, not a journey
  1. EvaluateLimited
  2. Sign upLimited
  3. PayReady
  4. ProvisionLimited
  5. OperateLimited
  1. 01

    Evaluate

    Limited

    Only some material eligibility conditions are decidable before commitment.

    The exact service and stable evaluation or access entrypoints are publicly discoverable.

    Applicable terms are stable, readable, retrievable, and materially complete.

    Price or no-charge status, variables, currency, and material conditions are explicit.

    Evidence and actions6 signals

    Can an agent decide every material eligibility condition before commitment?

    supported: fresh

    Only some material eligibility conditions are decidable before commitment.

    Twilio's Terms of Service explicitly define material eligibility conditions including legal power and authority to accept the agreement, entity domicile identification, and representations regarding authority, but specific product-level eligibility criteria are not fully detailed in the provided excerpt.

    eligibility_decidability: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent estimate cost or confirm no-charge status before commitment?

    supported: fresh

    Price or no-charge status, variables, currency, and material conditions are explicit.

    Twilio provides explicit pay-as-you-go pricing variables for SMS ($0.0083) and WhatsApp ($0.005) messaging, alongside phone number fees ($1.15/month).

    pricing_decidability: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent find the exact service and its stable entrypoints?

    supported: fresh

    The exact service and stable evaluation or access entrypoints are publicly discoverable.

    The Twilio API overview documentation outlines stable REST APIs and SDK entrypoints for the Messaging API.

    service_discovery: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Are verified structured discovery artifacts available?

    missing: unknown

    Current admissible evidence does not resolve this finding.

    structured_evaluation_discovery: Unknown

    Can an agent retrieve and understand the applicable commitment terms?

    supported: fresh

    Applicable terms are stable, readable, retrievable, and materially complete.

    Applicable terms of service are retrievable and readable, detailing customer responsibilities, acceptable use policy incorporation, and document order of precedence.

    terms_access: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Does the vendor deliberately describe access for web agents?

    missing: unknown

    Current admissible evidence does not resolve this finding.

    verified_web_agent_access: Unknown

    What would improve this stage

    • State every material eligibility condition and required input explicitly.
  2. 02

    Sign up

    Limited

    Machine credentials exist but require manual copying, broad authority, or weak lifecycle support.

    A stable canonical route begins the required access bootstrap.

    Evidence and actions5 signals

    Can an agent operate the access controls and safe handoffs deterministically?

    supported: fresh

    Current admissible evidence does not resolve this finding.

    The retained evidence describes Console home page options and trial flows, but does not state whether the access control form inputs, navigation, and validation can be operated deterministically by an agent.

    access_control_operability: Unknown: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Is there a stable route to begin obtaining service access?

    supported: fresh

    A stable canonical route begins the required access bootstrap.

    Twilio explicitly provides a stable route to begin obtaining service access by instructing users to sign up for a Twilio trial account, which opens the Twilio Console.

    access_entrypoint_stability: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent obtain access without an unsupported CAPTCHA boundary?

    supported: fresh

    Current admissible evidence does not resolve this finding.

    The retained evidence across both captured targets describes trial setup, phone verification steps, and account options, but does not state whether a CAPTCHA is present or if an agent-compatible route exists.

    captcha_compatible_access: Unknown: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent obtain scoped, revocable authority for this service?

    supported: fresh

    Machine credentials exist but require manual copying, broad authority, or weak lifecycle support.

    Twilio supports machine credentials such as API keys (Main, Standard, and Restricted) that can be generated or revoked, but obtaining them via the Console involves manual credential management.

    delegated_identity_access: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can required phone verification be completed through a supported boundary?

    supported: fresh

    Current admissible evidence does not resolve this finding.

    The sign-up process explicitly requires verifying a personal phone number via SMS, but the retained text does not define a supported, resumable handoff mechanism for an agent following human verification.

    phone_verification_compatible: Unknown: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    What would improve this stage

    • Provide scoped delegated authorization with consent, revocation, and deterministic resumption.
  3. 03

    Pay

    Ready

    Charge or no-charge status, currency, recurrence, and material conditions are disclosed.

    A documented direct purchase path reaches paid access without a vendor decision point.

    Evidence and actions4 signals

    Can an agent construct checkout, hand off approval safely, and resume?

    supported: fresh

    Current admissible evidence does not resolve this finding.

    The retained documentation describes clicking Upgrade in the Twilio Console to create a profile, add an address, load a starting balance, and enter payment details. However, the evidence does not detail deterministic API/protocol flow steps for checkout hand off approval and resumption.

    checkout_operability: Unknown: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Is the exact commercial commitment disclosed before authorization?

    supported: fresh

    Charge or no-charge status, currency, recurrence, and material conditions are disclosed.

    Twilio discloses pricing for Messaging API before authorization. It provides a pay-as-you-go model with no contracts or commitments, detailing SMS/RCS starting at $0.0083 per outbound/inbound message plus carrier fees, WhatsApp starting at $0.005 plus Meta template fees, and phone numbers starting at $1.15 per month.

    commitment_disclosure: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can payment be authorized within scoped agent or explicit human authority?

    supported: fresh

    Current admissible evidence does not resolve this finding.

    The evidence states that upgrading involves adding payment details and loading a starting balance in the Twilio Console, but it does not specify a documented rail supporting scoped agent delegation or explicit human-confirmed authorization with receipts.

    payment_authorization: Unknown: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Is a direct self-service path to paid access documented?

    supported: fresh

    A documented direct purchase path reaches paid access without a vendor decision point.

    Twilio documents a direct self-service path to move from a free trial to a paid account. Users can click the Trial banner or Upgrade in the Console, create a profile, add an address, load a starting balance, and add payment details to upgrade without a vendor decision point.

    self_service_purchase: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

  4. 04

    Provision

    Limited

    Delivery needs additional human transfer or has weak scope or lifecycle semantics.

    Completion is observable, but an asynchronous path omits a material terminal, bound, or reconciliation property.

    Provisioning is machine-triggerable or follows deterministically from an allowed handoff.

    Evidence and actions3 signals

    Can usable access material be delivered securely to an authorized agent?

    supported: fresh

    Delivery needs additional human transfer or has weak scope or lifecycle semantics.

    Twilio declares that Standard and Restricted API keys can be created through its REST API, but the retained excerpt does not fully specify secret response and transfer semantics.

    access_material_delivery: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent determine successful provisioning completion and reconcile asynchronous failure?

    supported: fresh

    Completion is observable, but an asynchronous path omits a material terminal, bound, or reconciliation property.

    The REST API creates Message resources and returns a status property with explicit message states such as queued or sending. Current evidence leaves asynchronous reconciliation and documented bounds unresolved.

    provisioning_completion: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can provisioning be initiated within supported agent authority?

    supported: fresh

    Provisioning is machine-triggerable or follows deterministically from an allowed handoff.

    Provisioning of outgoing messages can be initiated directly by sending an HTTP POST request to the Account Messages list resource URI.

    provisioning_operability: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    What would improve this stage

    • Deliver scoped access material through a secure documented machine-usable flow.
    • Expose bounded machine-readable terminal status and reconciliation semantics.
  5. 05

    Operate

    Limited

    Safe failure handling is documented only partially.

    Only part of the credential lifecycle is agent-operable.

    Every essential target has a stable documented agent-usable interface alternative.

    Request-time authentication is documented and usable under scoped agent authority.

    Essential operations have stable readable request, response, and effect semantics.

    Evidence and actions6 signals

    Is an agent-native protocol interface verified against the essential targets?

    missing: unknown

    Current admissible evidence does not resolve this finding.

    agent_protocol_interface: Unknown

    Can an agent manage credential expiry, rotation, revocation, compromise, and recovery?

    supported: fresh

    Only part of the credential lifecycle is agent-operable.

    Twilio documents that API keys can be used to authenticate requests and can be revoked if compromised or no longer used to prevent unauthorized access. However, full automated credential lifecycle including programmatic rotation or recovery paths for main account secrets is not completely established.

    credential_lifecycle: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent handle applicable failure modes safely?

    supported: fresh

    Safe failure handling is documented only partially.

    Twilio documents API error status codes (e.g., 400 Bad Request, 404 Not Found, 429 Too Many Requests, 500/503), error response structures (status, message, code, more_info), and delivery status callback tracking via MessageStatus and ErrorCode. Complete failure semantics such as explicit idempotency bounds or cancellation guarantees remain partially covered.

    failure_contract: Limited: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Can an agent authenticate service operations with scoped authority?

    supported: fresh

    Request-time authentication is documented and usable under scoped agent authority.

    Twilio supports request-time authentication using API Key and API Key Secret (recommended) via HTTP Basic authentication, providing standard or restricted fine-grained access permissions across API endpoints.

    operation_authentication: Ready: tested 20 Aug

    Method public-http-semantic-assessment 2026-08-20

    Are essential operation inputs, outputs, and effects stable and decidable?

    supported: fresh

    Essential operations have stable readable request, response, and effect semantics.

    The API inputs, outputs, and effects are stably documented across the target resources, including request parameters, JSON/XML response schemas, status codes, HATEOAS URIs, status callback payloads, and CRUD message operations.

    operation_contract: Ready: tested 20 Aug

    • messaging-api

    Method public-http-semantic-assessment 2026-08-20

    Can an agent perform every essential assessment target through a usable interface?

    supported: fresh

    Every essential target has a stable documented agent-usable interface alternative.

    All essential assessment targets are accessible via stable, documented interfaces including REST HTTP APIs, Twilio SDKs across major programming languages, and the Twilio CLI.

    target_interface_access: Ready: tested 20 Aug

    • messaging-api

    Method public-http-semantic-assessment 2026-08-20

    What would improve this stage

    • Document applicable structured errors, retry, cancellation, and reconciliation semantics.
    • Provide scoped expiry, rotation, revocation, compromise, and recovery operations.

What works

  • Pay: Charge or no-charge status, currency, recurrence, and material conditions are disclosed.

What blocks agents

  • Evaluate: Only some material eligibility conditions are decidable before commitment.
  • Sign up: Machine credentials exist but require manual copying, broad authority, or weak lifecycle support.
  • Provision: Delivery needs additional human transfer or has weak scope or lifecycle semantics.
  • Operate: Safe failure handling is documented only partially.

Improve the report

Correct it, rerun it, or improve the funnel.

Profile
arp_01kzf0m4xm8n4vc1f7z6qs2yh5
Projection
sha256:c3941dc76f86f1b5e5539a8ccb95cfdad0f8b8303b985d77d1653b8c95ad1248
Policy
service-use-2026-08-20-public-evidence-r9 · sha256:57bf95fd6d0fe6fe9173a68b60e8d8dc2179b357c88ff4349675a72d0e1d4139