{
  "api_contract": "sourcey.catalog-api/v1",
  "release_id": "sha256:f94358e3c57b6e575ca58c8031b9b7552cbfdb411f937b8ecdc3b042c4980a77",
  "artifact_sha256": "sha256:7472396c2449279d33e7a0fb2426f02a89991501262d1db8c04c81d57bdf9021",
  "data": {
    "revision_contract": "sourcey.agent-readiness-revision/v1alpha1",
    "agent_readiness_profile_id": "arp_01kzf0m4xc6w3hq8r2f9bj5nta",
    "entity_id": "ent_01kyh8fpe42ws3zbxkkaybx2ea",
    "scope": {
      "product": {
        "key": "neon-api",
        "name": "Neon API"
      },
      "funnel": {
        "key": "project-database-lifecycle",
        "name": "Project and database lifecycle"
      }
    },
    "catalog_binding": {
      "base_release_id": "sha256:cad9f851ab1bb553246eb2fb2b2803a4741814a33ccf28997014247439b9013d",
      "entity_revision_digest": "sha256:f7efa8be65ed9dd1e5649201793fa6c168f217b8886de5764e635ced89e485cd"
    },
    "declaration_revision_digest": "sha256:aa7e9acb167fe90a50fff00c79fef920a5a8f831444401e6a97b73f3b922d798",
    "declaration": {
      "declaration_id": "declaration_neon_api_project_database_lifecycle",
      "provenance": {
        "repository": "sourcey/agent-ready-services",
        "commit": "62b512f0c49352e55a399ba53866a5effa431d71",
        "path": "vendors/ne/neon.yaml",
        "git_blob_oid": "06dbd80ec662ce8f5a198d7bd50c9404cecdb3f2",
        "blob_digest": "sha256:4f1776434097c3e2b4fde5c0ddf8696ce4e22cf7212ac89c7d752985c13f666e"
      },
      "status": "community_declared"
    },
    "lifecycle": "active",
    "effective_from": "2026-08-20T14:33:24.000Z",
    "signals": [
      {
        "stage": "evaluate",
        "signal_code": "eligibility_decidability",
        "selector_group_id": "eligibility_decidability-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:57:01.506Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e91204dcd8b1d965db432c583843710f6a9faac893c902b88d7d00aa1ccf2393",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ced8032a21a6db190d7d5262c7f87f5ca61a6e6c7a579357e1973d68679dd08",
              "sha256:3df89f0cc9cb3acb753538c7d0c82323587ed7588944c168b3d31121fe8dbdcf",
              "sha256:5612fd0cf4de0bf169bca8952c02fe2fa65c5b646c7c50f1dd664f44f7af1275",
              "sha256:c85742301de66e30f495148e7368f428bcb785195dd756fced941b95d96ba0a5"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3df89f0cc9cb3acb753538c7d0c82323587ed7588944c168b3d31121fe8dbdcf",
                "start_byte": 6970,
                "end_byte": 7765,
                "value_digest": "sha256:aaa2f6acd65d6d4d5881c7340bc81b80785e8aedacab0b55d527cf83610a7b90"
              }
            ]
          }
        ],
        "note": "The Product Specific Schedule governs Customer's use of Databricks' Neon product family. Accessing Platform Services binds the customer to the Schedule, and individuals entering into it on behalf of a company represent and warrant that they are authorized to bind that legal entity."
      },
      {
        "stage": "evaluate",
        "signal_code": "pricing_decidability",
        "selector_group_id": "pricing_decidability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:02.772Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:b5b68298734ba5285afd47d7caa377c9f918a7d5ed908e95161ef8670a86890f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5786b82b544ef6468fe107ff45e8d06aaf1e8fcbdc14705dba1a19f892029763",
              "sha256:a563582e51e210efbb28da39d2bbdf0dec6f99ad57117a272ea562fdfb5d3e18"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
                "start_byte": 19484,
                "end_byte": 20279,
                "value_digest": "sha256:cb5fb60d9e654a9705eb7c3adc9ee6f40d8dd0cf35d979b87504a2e8807b5c18"
              },
              {
                "artifact_digest": "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
                "start_byte": 7542,
                "end_byte": 8341,
                "value_digest": "sha256:c90956798355e238ae9db215cb69bf48080dac695b1298175fc9cf8d4cdbc299"
              }
            ]
          }
        ],
        "note": "Neon pricing establishes a Free plan at $0 with specific limits (100 projects, 100 CU-hrs monthly per project, 0.5 GB storage per project) with no credit card required, as well as paid usage pricing details such as extra branches billed at $1.50 per extra branch-month ($0.002 per hour)."
      },
      {
        "stage": "evaluate",
        "signal_code": "service_discovery",
        "selector_group_id": "service_discovery-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:02.068Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a038053a373b02789674a53c0c806cd42cc25b74f3dd8a036b7a01ea601ae4c1",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5b810151fabf3b8387279a40638ebc61058d6678d552a7c15837f450ce1e443a",
              "sha256:7bf8d57096dec5f1a4e2c599eeebf2e061bc14f306fbd5f5d0a9c7133c4e075d",
              "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5",
                "start_byte": 14841,
                "end_byte": 15639,
                "value_digest": "sha256:ad7390bf085fc610a70de9cc5ee16c91d96274d9f02f5c02ee4756038860b4ab"
              },
              {
                "artifact_digest": "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5",
                "start_byte": 20413,
                "end_byte": 21215,
                "value_digest": "sha256:826d39045128b0c2e17c5be8cffaa2bb0e4be48470c86d9d93c3b5c836a99a5d"
              }
            ]
          }
        ],
        "note": "The Neon API reference provides the exact service endpoints and base URL (https://console.neon.tech/api/v2/), along with links to the Neon OpenAPI Specification in JSON format."
      },
      {
        "stage": "evaluate",
        "signal_code": "terms_access",
        "selector_group_id": "terms_access-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:57:01.506Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e91204dcd8b1d965db432c583843710f6a9faac893c902b88d7d00aa1ccf2393",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ced8032a21a6db190d7d5262c7f87f5ca61a6e6c7a579357e1973d68679dd08",
              "sha256:3df89f0cc9cb3acb753538c7d0c82323587ed7588944c168b3d31121fe8dbdcf",
              "sha256:b36a041c5d8a3a0f15a1ad59391f56a72feb9cd61cd1869b3808b0bf8af798e5",
              "sha256:c85742301de66e30f495148e7368f428bcb785195dd756fced941b95d96ba0a5"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3df89f0cc9cb3acb753538c7d0c82323587ed7588944c168b3d31121fe8dbdcf",
                "start_byte": 6970,
                "end_byte": 7765,
                "value_digest": "sha256:aaa2f6acd65d6d4d5881c7340bc81b80785e8aedacab0b55d527cf83610a7b90"
              },
              {
                "artifact_digest": "sha256:3df89f0cc9cb3acb753538c7d0c82323587ed7588944c168b3d31121fe8dbdcf",
                "start_byte": 8562,
                "end_byte": 9356,
                "value_digest": "sha256:daa3c3b5e35bd89e94de0fd1a97d9fac1fea200a7d2cef1b32acd55f9a23f10f"
              }
            ]
          }
        ],
        "note": "The Product Specific Schedule for Neon Cloud Computing Platform Services is retrievable, but explicitly incorporates the then-current Databricks Master Cloud Services Agreement located at https://www.databricks.com/legal/mcsa and usage-based plan documentation located at https://neon.com/docs/introduction/plans."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_control_operability",
        "selector_group_id": "access_control_operability-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:02.682Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "The signup endpoint for console.neon.tech returned an HTTP 403 Cloudflare security verification challenge page, leaving the operability of the access controls unresolved in the admissible evidence."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_entrypoint_stability",
        "selector_group_id": "access_entrypoint_stability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:35.828Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "console-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-5d65e00053d275dc55701ece542bb1e203f417bf461cf87ed7aca40281604231"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:274565ca5887febf622bea4814448e97400d1f615bca3431fca128fb4f2ac478",
                "capture_rung": "headless"
              }
            ],
            "artifact_digests": [
              "sha256:3ed02d29a5ef809cb4fb6f66beef90c9c822125d1bd51ca754cef2453a99de5d",
              "sha256:4e6713d3308565742309bad568391d1b45990f1ec90d45d1a280574af6ef9e27",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:505ff18bc9a593dea623cf0f9837ec00d6c7b1c7a15f05bcea5e99f7d1874daa",
              "sha256:64fa331015cbb7d721f7614013654ba5260a05b0f6c95f49c7122bcfe4e1d3cc",
              "sha256:686bdaceb611712897a8496af7d7a72a134403ae8297d8fba8d5c81a744fa3e6"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "readiness-5d65e00053d275dc55701ece542bb1e203f417bf461cf87ed7aca40281604231"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ed02d29a5ef809cb4fb6f66beef90c9c822125d1bd51ca754cef2453a99de5d",
                "start_byte": 7332,
                "end_byte": 8121,
                "value_digest": "sha256:2ea9753f31f7176f0555fc78a3a64a62b171267aff99aaef6c9f8e37902f13bb"
              }
            ]
          }
        ],
        "note": "Neon documentation provides stable canonical navigation entrypoints to Log in and Sign up to begin obtaining service access."
      },
      {
        "stage": "sign_up",
        "signal_code": "captcha_compatible_access",
        "selector_group_id": "captcha_compatible_access-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:02.682Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          },
          {
            "node_kind": "resource",
            "node_id": "console-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-5d65e00053d275dc55701ece542bb1e203f417bf461cf87ed7aca40281604231"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "A captured Cloudflare security response does not establish a mandatory CAPTCHA across the actual registration flow."
      },
      {
        "stage": "sign_up",
        "signal_code": "delegated_identity_access",
        "selector_group_id": "delegated_identity_access-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:56:28.533Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-keys"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:612538cbc733e7aa333ccb665242497f4c56283fce03c239dadbc3c4f6857994",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4575d79022dac37cb811b4b9706b98337b1525e3eace0f034c4459c4efc80104",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:c9ff185b6523c6e54ddd28bc376258cf368d2369634a4cdc3285f4d2e5c2dea9",
              "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-keys"
            },
            "locators": [
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 14450,
                "end_byte": 15246,
                "value_digest": "sha256:d4507938a847ceaf6c6e7056f086cc8ef77a4d1f982a703efada38941b55cae0"
              },
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 9078,
                "end_byte": 9868,
                "value_digest": "sha256:4ac4e9d2aad38bd458c340171bbd3dd494fb27c370b57f9a5ed53cfb041f1cfb"
              }
            ]
          }
        ],
        "note": "Neon supports Personal, Organization, and Project-scoped API keys with specific access scopes and immediate revocation capabilities, but creating the initial API key requires manual action in the Neon Console where the secret token is displayed only once."
      },
      {
        "stage": "sign_up",
        "signal_code": "phone_verification_compatible",
        "selector_group_id": "phone_verification_compatible-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:56:35.828Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "console-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-5d65e00053d275dc55701ece542bb1e203f417bf461cf87ed7aca40281604231"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "The retained documentation details password changes, two-factor authentication via authenticator apps, and passkeys, but does not state phone verification requirements."
      },
      {
        "stage": "pay",
        "signal_code": "checkout_operability",
        "selector_group_id": "checkout_operability-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:56:44.133Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-a75ce7955cfd5f96e15192ecd4ffb6cb37ec27d3c666eca1b31e8b3466a289d8"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [],
        "note": "Admitted evidence describes plan pricing and billing management options in the Neon Console, but does not document an API, protocol, or web flow for an agent to construct checkout, hand off approval safely, and resume."
      },
      {
        "stage": "pay",
        "signal_code": "commitment_disclosure",
        "selector_group_id": "commitment_disclosure-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:02.772Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:b5b68298734ba5285afd47d7caa377c9f918a7d5ed908e95161ef8670a86890f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5786b82b544ef6468fe107ff45e8d06aaf1e8fcbdc14705dba1a19f892029763",
              "sha256:a9948651f50d6df8ad7c86e4ba9e8331eeecc1748db5da835a107b51e38aeb0b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
                "start_byte": 13898,
                "end_byte": 14700,
                "value_digest": "sha256:2123f9d154f8088e56ad82105ef5c1c8a112752d06ccab9d65f30aaa1fd52765"
              },
              {
                "artifact_digest": "sha256:34b45953a0d5e7fd9ca3b8651078ea725587cd15a3d58d3bd400015715fc24cb",
                "start_byte": 7542,
                "end_byte": 8341,
                "value_digest": "sha256:c90956798355e238ae9db215cb69bf48080dac695b1298175fc9cf8d4cdbc299"
              }
            ]
          }
        ],
        "note": "Neon discloses its pricing structure on the pricing page. The Free plan is $0, while the Launch plan ($0.106 per CU-hour) and Scale plan ($0.222 per CU-hour) are usage-based ('Pay for what you use') with USD currency and specific hourly compute rates."
      },
      {
        "stage": "pay",
        "signal_code": "payment_authorization",
        "selector_group_id": "payment_authorization-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:56:44.133Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-a75ce7955cfd5f96e15192ecd4ffb6cb37ec27d3c666eca1b31e8b3466a289d8"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [],
        "note": "Retained evidence outlines billing methods, auto-debit on the first day of the month, and manual invoice payment by account owners/admins, but does not define a documented authorization rail for scoped agent delegation or explicit human-confirmed authorization with receipts."
      },
      {
        "stage": "pay",
        "signal_code": "self_service_purchase",
        "selector_group_id": "self_service_purchase-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:44.133Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-a75ce7955cfd5f96e15192ecd4ffb6cb37ec27d3c666eca1b31e8b3466a289d8"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9593e96db345228d5e17839cda051ddc039efc9c724ccfe058f59b4f560f33d9",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:015976bbabe59ca31ae78042c033e8830a71975cf7e0e80b8d24a2b5603e8bee",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:814d5f44e9607ed3a9d18d5198ca4f9733100fdeb5c1f2014de3134315dae5e1",
              "sha256:cc5891e9a12c7b54acc58419f37f56a4ba3f49b5e7e4cb89b087fd6e1d6da6f3"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "billing-checkout"
            },
            "locators": [
              {
                "artifact_digest": "sha256:015976bbabe59ca31ae78042c033e8830a71975cf7e0e80b8d24a2b5603e8bee",
                "start_byte": 8763,
                "end_byte": 9553,
                "value_digest": "sha256:12722201274e535efc144a42cc17fb51bbf7232bcc61a0c1ca05f97d5de9c812"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:c137093b6eef134d39d439f213bd2aed4e262f58f7d1b6b0c6aa101f3cf4f6cf",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:60d745c4e64d67288e23b8dbff2d183d215fec918d526076f3d26040ea336fc7",
              "sha256:863a1a863b57724cda4aae4fadc10d06bc89d891093b3a31b9c25f863de0b21e",
              "sha256:98b6b5ff99db191b42d70bfd9a2754112c5126942030fdba20418f2264a9438b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "readiness-a75ce7955cfd5f96e15192ecd4ffb6cb37ec27d3c666eca1b31e8b3466a289d8"
            },
            "locators": [
              {
                "artifact_digest": "sha256:98b6b5ff99db191b42d70bfd9a2754112c5126942030fdba20418f2264a9438b",
                "start_byte": 6544,
                "end_byte": 7342,
                "value_digest": "sha256:cb206dfa1cea7e3e3ec253d9aa6df9ba9e34fe170ec20f8f89aca5fe64df878b"
              }
            ]
          }
        ],
        "note": "Neon documentation provides a direct self-service path to paid access. Users can start for free and change plans (Launch or Scale) or update payment methods directly from the Billing page in the Neon Console without a required vendor decision point."
      },
      {
        "stage": "provision",
        "signal_code": "access_material_delivery",
        "selector_group_id": "access_material_delivery-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:56:28.533Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-keys"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:612538cbc733e7aa333ccb665242497f4c56283fce03c239dadbc3c4f6857994",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5ccd617eca3a6725a3472da5ac80d27c5d9d7fa4da6dabaa9a8fd37febb93f97",
              "sha256:c9ff185b6523c6e54ddd28bc376258cf368d2369634a4cdc3285f4d2e5c2dea9",
              "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-keys"
            },
            "locators": [
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 10670,
                "end_byte": 11469,
                "value_digest": "sha256:54a5b181a7e8c55a48fe8058276f499b5d72c8c451d50282272ebac8e046fc46"
              }
            ]
          }
        ],
        "note": "When creating API keys from the Neon Console, the secret token is displayed only once and cannot be retrieved later. Users must manually copy it immediately and store it securely."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_completion",
        "selector_group_id": "provisioning_completion-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:57:03.190Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "branch-operations"
          },
          {
            "node_kind": "resource",
            "node_id": "create-project"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a0869f49a37eefbde132dabf29b31cb1e6c9d816ed45866d07c00252aa76c3fe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7c189cd4ac5c56bfadf616f6d05c01dbe2063ddbe8ea1db39794aa6896a45ac3",
              "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
              "sha256:e2d70f407b28a2c0e180dddecbbf91e833138bf5c66b53d00cd6ab46dc122900"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "branch-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
                "start_byte": 30430,
                "end_byte": 31230,
                "value_digest": "sha256:d55093cdda50935ef1c6986ac57caafe4369252d02cccaf51c5a545fdac34d07"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:15c932ef611dfb2cc338ae8af6cc505fe7e716c590c271caac132e3984045408",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1b796a4307f9328206ed22cb20fc1921774105a786bd0bb2cf4bf9f26ce5b3d7",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
              "sha256:e044d3754c1f572f1c2daa5fe09050830263066f192dbc6c5d0d7dd142cd9665"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "create-project"
            },
            "locators": [
              {
                "artifact_digest": "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
                "start_byte": 22961,
                "end_byte": 23760,
                "value_digest": "sha256:cee90e6893651e6b9a2c0c18fbcbf28899cd857769d21a1cedf99e5b8c60d1d7"
              }
            ]
          }
        ],
        "note": "When creating a project via API, a 201 response returns a project object with connection details, but users must wait for background operations to finish before connecting. Branch creation exposes asynchronous operation progress statuses like 'running' and 'scheduling'."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_operability",
        "selector_group_id": "provisioning_operability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:03.190Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-keys"
          },
          {
            "node_kind": "resource",
            "node_id": "branch-operations"
          },
          {
            "node_kind": "resource",
            "node_id": "create-project"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a0869f49a37eefbde132dabf29b31cb1e6c9d816ed45866d07c00252aa76c3fe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2a7a470cf651d7caca3cae8f30acb8fe5f3a47c4a7d467c340188807c7200dc3",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7c189cd4ac5c56bfadf616f6d05c01dbe2063ddbe8ea1db39794aa6896a45ac3",
              "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "branch-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
                "start_byte": 27307,
                "end_byte": 28030,
                "value_digest": "sha256:1d73afc80462fb0e0acd1192eadd1a9e393130ea5cad55c014730055a76ceb0f"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:15c932ef611dfb2cc338ae8af6cc505fe7e716c590c271caac132e3984045408",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:34b47b172a19308a01c5bab55cc498d080cfa34f987671fdd1cc4fedf5abe2d8",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
              "sha256:e044d3754c1f572f1c2daa5fe09050830263066f192dbc6c5d0d7dd142cd9665"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "create-project"
            },
            "locators": [
              {
                "artifact_digest": "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
                "start_byte": 22161,
                "end_byte": 22960,
                "value_digest": "sha256:36b93e26331b22de43d0d67d32ee702db1d8152278019b8cef2b50bd3a479b80"
              }
            ]
          }
        ],
        "note": "Provisioning can be initiated programmatically within supported agent authority via the Neon API, such as calling POST /projects to create a project or POST /projects/{project_id}/branches to create a branch."
      },
      {
        "stage": "operate",
        "signal_code": "credential_lifecycle",
        "selector_group_id": "credential_lifecycle-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:56:28.533Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-keys"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:612538cbc733e7aa333ccb665242497f4c56283fce03c239dadbc3c4f6857994",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4575d79022dac37cb811b4b9706b98337b1525e3eace0f034c4459c4efc80104",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:c9ff185b6523c6e54ddd28bc376258cf368d2369634a4cdc3285f4d2e5c2dea9",
              "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-keys"
            },
            "locators": [
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 14450,
                "end_byte": 15246,
                "value_digest": "sha256:d4507938a847ceaf6c6e7056f086cc8ef77a4d1f982a703efada38941b55cae0"
              },
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 9078,
                "end_byte": 9868,
                "value_digest": "sha256:4ac4e9d2aad38bd458c340171bbd3dd494fb27c370b57f9a5ed53cfb041f1cfb"
              }
            ]
          }
        ],
        "note": "Neon documents creating and revoking API keys, as well as manually rotating them by creating a replacement and revoking the old key. Revocation is immediate and permanent, and compromised keys should be revoked immediately. However, API keys do not expire or rotate on a schedule."
      },
      {
        "stage": "operate",
        "signal_code": "failure_contract",
        "selector_group_id": "failure_contract-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:57:03.190Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "branch-operations"
          },
          {
            "node_kind": "resource",
            "node_id": "project-operations"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a0869f49a37eefbde132dabf29b31cb1e6c9d816ed45866d07c00252aa76c3fe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7c189cd4ac5c56bfadf616f6d05c01dbe2063ddbe8ea1db39794aa6896a45ac3",
              "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
              "sha256:e2d70f407b28a2c0e180dddecbbf91e833138bf5c66b53d00cd6ab46dc122900"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "branch-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
                "start_byte": 30430,
                "end_byte": 31230,
                "value_digest": "sha256:d55093cdda50935ef1c6986ac57caafe4369252d02cccaf51c5a545fdac34d07"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e581c29c7a90132d3130f385e95784038f8286b7cf4cd5a7a4efb417e61b703b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0a355b09baafeba4018b1d844fddfdc7298324e049d69923ec7146b7405b6a52",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7a4d696df0d3d824125d864bf7fe0496b841f308bf6523d8cb979fcc1e6bb482",
              "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "project-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b",
                "start_byte": 28712,
                "end_byte": 29512,
                "value_digest": "sha256:1ec5c89b456413aef89af0bd2c037d53a438545c0383d0a1d85a103d264e0108"
              }
            ]
          }
        ],
        "note": "Neon API exposes asynchronous operations with an explicit failure count and operational state tracking (such as running or scheduling) for branch and project actions. However, full safe retry, cancellation, idempotency, and reconciliation semantics across all failure modes are not completely detailed in the provided documentation."
      },
      {
        "stage": "operate",
        "signal_code": "operation_authentication",
        "selector_group_id": "operation_authentication-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:28.533Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-keys"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:612538cbc733e7aa333ccb665242497f4c56283fce03c239dadbc3c4f6857994",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:c9ff185b6523c6e54ddd28bc376258cf368d2369634a4cdc3285f4d2e5c2dea9",
              "sha256:cf38b0f5223d4e265198ed1b32e8f45014a8c5901ed660500f57c0606804ba74",
              "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-keys"
            },
            "locators": [
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 12265,
                "end_byte": 13041,
                "value_digest": "sha256:e960012e810931f5333cca7cb4aadd1c8f0dff450c54561f22c9ad655327dc2b"
              },
              {
                "artifact_digest": "sha256:d8d33a1a532f0cdbb163f4a817a1f9cd2fa3636eae0332f15a1aec6241e8d999",
                "start_byte": 9078,
                "end_byte": 9868,
                "value_digest": "sha256:4ac4e9d2aad38bd458c340171bbd3dd494fb27c370b57f9a5ed53cfb041f1cfb"
              }
            ]
          }
        ],
        "note": "Neon supports request-time API key authentication via the standard HTTP Authorization header using the Bearer scheme (`Authorization: Bearer $NEON_API_KEY`). API keys can be scoped to personal, organization, or single project access."
      },
      {
        "stage": "operate",
        "signal_code": "operation_contract",
        "selector_group_id": "operation_contract-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:03.190Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "project-api"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e581c29c7a90132d3130f385e95784038f8286b7cf4cd5a7a4efb417e61b703b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7a4d696df0d3d824125d864bf7fe0496b841f308bf6523d8cb979fcc1e6bb482",
              "sha256:7d00f804365b719e5080a85dda2f386fdfe44356a7407d7faab7078febd72432",
              "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "project-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b",
                "start_byte": 28179,
                "end_byte": 28711,
                "value_digest": "sha256:bf5a646e7d8afcdcca9edea39fcdeb55a7e37455fa8d86d05337d56414dc91e0"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:15c932ef611dfb2cc338ae8af6cc505fe7e716c590c271caac132e3984045408",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7263560d412450fea32171ab66c26855874501f6b2dae55caa34e106b2f483c0",
              "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
              "sha256:e044d3754c1f572f1c2daa5fe09050830263066f192dbc6c5d0d7dd142cd9665"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "create-project"
            },
            "locators": [
              {
                "artifact_digest": "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
                "start_byte": 23761,
                "end_byte": 24555,
                "value_digest": "sha256:01655e95be32212a29fb8e53b73a64046a12669721ce6c26b2047d3d6ffc1733"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a038053a373b02789674a53c0c806cd42cc25b74f3dd8a036b7a01ea601ae4c1",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5b810151fabf3b8387279a40638ebc61058d6678d552a7c15837f450ce1e443a",
              "sha256:71b7165007b28f8be4bf60a199acc2e68f75c92e835575bc99f72cbd46414cf7",
              "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5",
                "start_byte": 14841,
                "end_byte": 15639,
                "value_digest": "sha256:ad7390bf085fc610a70de9cc5ee16c91d96274d9f02f5c02ee4756038860b4ab"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a0869f49a37eefbde132dabf29b31cb1e6c9d816ed45866d07c00252aa76c3fe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7c189cd4ac5c56bfadf616f6d05c01dbe2063ddbe8ea1db39794aa6896a45ac3",
              "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
              "sha256:fd1fcb1ea8a4da726db443f2306280470213a5f922736fad2570dd9e0108adba"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "branch-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
                "start_byte": 28830,
                "end_byte": 29630,
                "value_digest": "sha256:6427747cb70a77777536d0f82457606ba3a6241e71c2203b8f5711e27f49fdbf"
              }
            ]
          }
        ],
        "note": "The Neon API provides stable, readable endpoints, schemas, request parameters, response objects, and HTTP status code behaviors for essential operations such as managing projects, branches, and API keys."
      },
      {
        "stage": "operate",
        "signal_code": "target_interface_access",
        "selector_group_id": "target_interface_access-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:03.190Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "project-api"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a038053a373b02789674a53c0c806cd42cc25b74f3dd8a036b7a01ea601ae4c1",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5b810151fabf3b8387279a40638ebc61058d6678d552a7c15837f450ce1e443a",
              "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5",
              "sha256:f1a305894c9f1e8cc85b468ea178be238622fe3a3d2a7979a1c1045e4fb6bf20"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a041fbe2bc633f198183e4c97a6625232eb50586176477812829c1b42c96a8c5",
                "start_byte": 20413,
                "end_byte": 21215,
                "value_digest": "sha256:826d39045128b0c2e17c5be8cffaa2bb0e4be48470c86d9d93c3b5c836a99a5d"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:15c932ef611dfb2cc338ae8af6cc505fe7e716c590c271caac132e3984045408",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
              "sha256:cb855734cd463fbe4219f5fac4402fcac15038d03e9ff4a1bb6364e038b4faee",
              "sha256:e044d3754c1f572f1c2daa5fe09050830263066f192dbc6c5d0d7dd142cd9665"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "create-project"
            },
            "locators": [
              {
                "artifact_digest": "sha256:912d95f5eef60e603e17b56c99e0788da628c6abf962d3de833aa23e087a9176",
                "start_byte": 17398,
                "end_byte": 18196,
                "value_digest": "sha256:99cb0a0625b5111d9439fc04da4cdb92c5b5ef0bb0fcb222ad905a308cfd64c4"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:a0869f49a37eefbde132dabf29b31cb1e6c9d816ed45866d07c00252aa76c3fe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7c189cd4ac5c56bfadf616f6d05c01dbe2063ddbe8ea1db39794aa6896a45ac3",
              "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
              "sha256:a53e51d41c91da129f645398341e9674655158f051ac8a38735da19f86315d16"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "branch-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:84aa82ffd46500cc8960c986e2ba6a6901ac9a25bc53c416e9f7d7b5ace7292e",
                "start_byte": 25711,
                "end_byte": 26510,
                "value_digest": "sha256:e092c58520a839c1912dfec0b46f542a0dc6d3c5983dfcbf53863066387e4fcb"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e581c29c7a90132d3130f385e95784038f8286b7cf4cd5a7a4efb417e61b703b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:78ad35f594721c5585f815fcf4190641fc94020213d51ac9248b3204fbc62e11",
              "sha256:7a4d696df0d3d824125d864bf7fe0496b841f308bf6523d8cb979fcc1e6bb482",
              "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "project-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:f9e2718db3cd2aabb8e34f885605e3bb97ad21bc51e6fc8e9af323548959271b",
                "start_byte": 12218,
                "end_byte": 13014,
                "value_digest": "sha256:d3b4f70346f94898a564e3ffc1bfd28f9307d6cddc1d4c108b18309084ed553e"
              }
            ]
          }
        ],
        "note": "Every essential target—including project management, branch operations, and API key management—has documented, agent-usable HTTP REST API endpoints."
      }
    ],
    "revision_digest": "sha256:2c1379ef65b4f98e3cc5446c5e5d9836a1e3b6ec09a962398c99cc4f67eca8ab"
  }
}
