{
  "api_contract": "sourcey.catalog-api/v1",
  "release_id": "sha256:f94358e3c57b6e575ca58c8031b9b7552cbfdb411f937b8ecdc3b042c4980a77",
  "artifact_sha256": "sha256:7472396c2449279d33e7a0fb2426f02a89991501262d1db8c04c81d57bdf9021",
  "data": {
    "revision_contract": "sourcey.agent-readiness-revision/v1alpha1",
    "agent_readiness_profile_id": "arp_01kzez1rxy9f1wce0r3p6yd35y",
    "entity_id": "ent_01kyh8fpe10b164tj935t8k5zb",
    "scope": {
      "product": {
        "key": "aws-cloud",
        "name": "AWS Cloud"
      },
      "funnel": {
        "key": "api-resource-management",
        "name": "API resource management"
      }
    },
    "catalog_binding": {
      "base_release_id": "sha256:cad9f851ab1bb553246eb2fb2b2803a4741814a33ccf28997014247439b9013d",
      "entity_revision_digest": "sha256:dca08f2f9410a83d7a9baaeb4e32f36a3828dadb9cf563a07ff5c25fb9f5d236"
    },
    "declaration_revision_digest": "sha256:0a626e30371202e5a17b20a0c3b3a9cfdaedf33be48b1dbb081867c46256ffb1",
    "declaration": {
      "declaration_id": "declaration_aws_cloud_api_resource_management",
      "provenance": {
        "repository": "sourcey/agent-ready-services",
        "commit": "62b512f0c49352e55a399ba53866a5effa431d71",
        "path": "vendors/aw/aws.yaml",
        "git_blob_oid": "57a682fcafc66fb13c152112ea55dc2efc798bfa",
        "blob_digest": "sha256:4dd5534d78e892926ff8b658a834a2a9bed3746faa9d3be1d95231bc63ad50b2"
      },
      "status": "community_declared"
    },
    "lifecycle": "active",
    "effective_from": "2026-08-20T14:33:24.000Z",
    "signals": [
      {
        "stage": "evaluate",
        "signal_code": "eligibility_decidability",
        "selector_group_id": "eligibility_decidability-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:56:17.935Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:568550ec56674d021569f2ae87d8637144f3e0ce0391d9ce165813d054793958",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:07470bb5d064a754eac9db0ea8dd451bba49eb6d7942a247d4fc275a5ba9b2b8",
              "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
              "sha256:3e91668d68f59f915cb3d3d7c4dc30f5a9d329b67d1886bdcbf2dc7b3301c794",
              "sha256:e4d38a1e8cbb19cc18ef665be42fa2ef0478dd8ec38d5486ac7338ec32ab4656"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
                "start_byte": 101674,
                "end_byte": 102473,
                "value_digest": "sha256:814ab6bb3ef4b78fbd57e7013ab2c5aa16afbb9962f57a85b38e40cfec131a80"
              },
              {
                "artifact_digest": "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
                "start_byte": 40696,
                "end_byte": 41490,
                "value_digest": "sha256:4ada0d8a6d2eb4d8a496a2130b18b2ba402a7a60d4552d6b116f50dc0f01857a"
              }
            ]
          }
        ],
        "note": "AWS Service Terms disclose specific eligibility rules for certain regional and account offerings, such as AWS UK switching addendum eligibility and AWS GovCloud (US) registration and eligibility verification requirements."
      },
      {
        "stage": "evaluate",
        "signal_code": "pricing_decidability",
        "selector_group_id": "pricing_decidability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:58.460Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "price-list-api"
          },
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f691eb10c11e872f359f58b1597637882505e552345914d0b4e5201037243bbe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:40a3bbea160007fbf797b0c3790473a58dc8ebb583ecaf1c0da0dcbc57691be3",
              "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
              "sha256:942f173079dfd4c678ba156634f9bcf58bf47453ad04143d1e61475809c74f8e",
              "sha256:d174d08757031537f850b60c444500450db8daed05bcb56f031de32b5ae0b985"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
                "start_byte": 20973,
                "end_byte": 21771,
                "value_digest": "sha256:b0f877a7745ec8c62108906a193180bb0f69272add0aaea0267fbc651e21ccd9"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bae1ddaef0f4a20e3083b219d8cabc498e573cd4c656475e9b8ca0acf8994cf5",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5ce3083f8d4eaae0bbae481d740e59d01deac9d01c01f1c47c8094a15f85f106",
              "sha256:fbe7b0554ee04f19d476a8b6180f8c162bb947d7ea6f06f918b9282d48bbf1f9"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "price-list-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
                "start_byte": 3475,
                "end_byte": 4272,
                "value_digest": "sha256:5c5b7972913be3be07bb7a22ab4e12c0ccc43fdcba093c73c26ff616e83bdf9f"
              }
            ]
          }
        ],
        "note": "AWS provides explicit pricing details and mechanisms before commitment, including the AWS Price List API catalog of products and prices and a pay-as-you-go pricing approach where users pay only for consumed services."
      },
      {
        "stage": "evaluate",
        "signal_code": "service_discovery",
        "selector_group_id": "service_discovery-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:41.844Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "cloud-control-overview"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e16ba2e5e04021a56c5e3f79de62976b01da952c5b85e0f7cb6c838325e58202",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5385ac65acb4feaf664aaa331ef440e7a3adf9b9880c50c86f5f0912b83accbf",
              "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
              "sha256:fb707b069eb5a8aaa0970fbfc2458949281107964c378ae7520d503fcddbeb21"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-overview"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
                "start_byte": 4277,
                "end_byte": 5064,
                "value_digest": "sha256:532a9520252bb0407b949f40b83a124eb58d1f8cb6d3e2aa52ca3e244986fa47"
              },
              {
                "artifact_digest": "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
                "start_byte": 6655,
                "end_byte": 7417,
                "value_digest": "sha256:6a4885bb3e222f35df08a672dd77712d0f6e2a12ab7af12964d0ffa29c107949"
              }
            ]
          }
        ],
        "note": "AWS Cloud Control API provides a standardized set of APIs and AWS CLI commands (e.g., create-resource, delete-resource, get-resource, list-resources, update-resource) to discover and perform CRUD-L operations on supported AWS resources."
      },
      {
        "stage": "evaluate",
        "signal_code": "terms_access",
        "selector_group_id": "terms_access-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:17.935Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:568550ec56674d021569f2ae87d8637144f3e0ce0391d9ce165813d054793958",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:07470bb5d064a754eac9db0ea8dd451bba49eb6d7942a247d4fc275a5ba9b2b8",
              "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
              "sha256:3e91668d68f59f915cb3d3d7c4dc30f5a9d329b67d1886bdcbf2dc7b3301c794",
              "sha256:f1bc95393395e7d8020ec176af4b39a906795e8ca49bbb51001f29f4499bf724"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
                "start_byte": 19863,
                "end_byte": 20657,
                "value_digest": "sha256:edc0aefe421a330e930fd526b9685b1235fb70cae20873e2d43fade38a738830"
              },
              {
                "artifact_digest": "sha256:1f74554c4b496e2118e44fc748fefdda195c6ec324700940c0bc47c3fba7a8f1",
                "start_byte": 0,
                "end_byte": 779,
                "value_digest": "sha256:6b4cc45daac892f349ef5f660575d317f457e2ab13ba918e2b1bf5844b878eb0"
              }
            ]
          }
        ],
        "note": "The applicable AWS Service Terms are retrievable, readable, and publicly accessible online."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_control_operability",
        "selector_group_id": "access_control_operability-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:56:18.734Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "The sign-up endpoint evidence contains metadata and a page title ('AWS Console - Signup'), but does not contain sufficient information to determine whether access controls and safe handoffs can be operated deterministically."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_entrypoint_stability",
        "selector_group_id": "access_entrypoint_stability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:19.508Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "account-creation"
          },
          {
            "node_kind": "resource",
            "node_id": "account-creation-troubleshooting"
          },
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-914498557291a986d5a6b102afef10bb5c0c85d7d80c2791cb316fc2b3abf984"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:0bae22ac7954a9433f5c3b951b3df66a0411883871c15d857d19aee0aa7993f8",
                "capture_rung": "headless"
              }
            ],
            "artifact_digests": [
              "sha256:135d102d65ba84607b2b36496cd623e39735e3e988fc39723d9917dbb2c72350",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:57f5b6541fdbcb507a61780b8f94f56d062cc61c7ce0ce9709bdb25f6aff6a10",
              "sha256:6eab202808f94d09326104670b23bc9e77a0017c7ac793bbd3e8d4972d88f6ee",
              "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
              "sha256:e939329e15756d6f60b641993938ab668dae43735883f1b0b49550a6ab24c88b"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "account-plan-activation"
            },
            "locators": [
              {
                "artifact_digest": "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
                "start_byte": 3935,
                "end_byte": 4729,
                "value_digest": "sha256:fb08d78f6de3d235929a68becae5d37176db0b539572a6a9aa1fb8d559ea179b"
              },
              {
                "artifact_digest": "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
                "start_byte": 6314,
                "end_byte": 7104,
                "value_digest": "sha256:b3d8108207013dcdc914dbb148db8719c136adaf394965ef605706791eadc065"
              }
            ]
          }
        ],
        "note": "A stable canonical route to begin obtaining service access exists via the 'Sign up for AWS' page and AWS account registration instructions provided in the AWS Account Management User Guide."
      },
      {
        "stage": "sign_up",
        "signal_code": "captcha_compatible_access",
        "selector_group_id": "captcha_compatible_access-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:19.508Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          },
          {
            "node_kind": "resource",
            "node_id": "account-creation"
          },
          {
            "node_kind": "resource",
            "node_id": "account-creation-troubleshooting"
          },
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-914498557291a986d5a6b102afef10bb5c0c85d7d80c2791cb316fc2b3abf984"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "Current admissible evidence across all target surfaces does not explicitly state whether an unsupported CAPTCHA boundary is required or bypassed during access."
      },
      {
        "stage": "sign_up",
        "signal_code": "delegated_identity_access",
        "selector_group_id": "delegated_identity_access-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:46.892Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "temporary-credentials"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d5e7d621d3145719abb8438552f34b7d0007f44105d0c2aa37fc9c27e04602f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:77a5ee35758acc94c41809debe7bb4663379445b840c6212cfbc7abb2351f7be",
              "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
              "sha256:e045f492f8225ce8b282d342a90f839e5b7d27d7a0351778b3a21d7c46bc455d"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "temporary-credentials"
            },
            "locators": [
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 12229,
                "end_byte": 13029,
                "value_digest": "sha256:b5b1beb9d6e8bf07692cb68e1be16b101aedc5cdc237416a9bb44f3f27dfe8ad"
              },
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 5088,
                "end_byte": 5887,
                "value_digest": "sha256:02ce800de780c67baf91380b42e314ea2a06c99fd3f0aa3c05b56d7d10286b4e"
              }
            ]
          }
        ],
        "note": "AWS STS operations such as AssumeRole and AssumeRoleWithWebIdentity provide temporary, scoped, and revocable security credentials in exchange for valid credentials or web identity tokens."
      },
      {
        "stage": "sign_up",
        "signal_code": "phone_verification_compatible",
        "selector_group_id": "phone_verification_compatible-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:19.508Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "account-creation"
          },
          {
            "node_kind": "resource",
            "node_id": "account-creation-troubleshooting"
          },
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-914498557291a986d5a6b102afef10bb5c0c85d7d80c2791cb316fc2b3abf984"
          }
        ],
        "assessment_method": {
          "name": "bounded-headless-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f1212e8cd082308cfde3c097bc933c4a4b72046b1f242205c3e27a3b020b3311"
        },
        "determination_bases": [],
        "note": "Documentation states that a phone number is required for identity verification during sign-up to receive automated calls or SMS codes, but it does not specify an explicit, supported agent handoff mechanism."
      },
      {
        "stage": "pay",
        "signal_code": "checkout_operability",
        "selector_group_id": "checkout_operability-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:05.033Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [],
        "note": "The retained evidence describes adding payment methods and completing account sign-up, but it does not establish a deterministic API or flow for agent-constructed checkout, approval handoff, and resumption."
      },
      {
        "stage": "pay",
        "signal_code": "commitment_disclosure",
        "selector_group_id": "commitment_disclosure-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:58.460Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "price-list-api"
          },
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bae1ddaef0f4a20e3083b219d8cabc498e573cd4c656475e9b8ca0acf8994cf5",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5ce3083f8d4eaae0bbae481d740e59d01deac9d01c01f1c47c8094a15f85f106",
              "sha256:fbe7b0554ee04f19d476a8b6180f8c162bb947d7ea6f06f918b9282d48bbf1f9"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "price-list-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
                "start_byte": 3475,
                "end_byte": 4272,
                "value_digest": "sha256:5c5b7972913be3be07bb7a22ab4e12c0ccc43fdcba093c73c26ff616e83bdf9f"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f691eb10c11e872f359f58b1597637882505e552345914d0b4e5201037243bbe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:40a3bbea160007fbf797b0c3790473a58dc8ebb583ecaf1c0da0dcbc57691be3",
              "sha256:50ae5546e266b3516eeb7d178a5c47b69dbc53c94313287cc2998a84e7c67e0c",
              "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
              "sha256:d174d08757031537f850b60c444500450db8daed05bcb56f031de32b5ae0b985"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
                "start_byte": 21772,
                "end_byte": 22565,
                "value_digest": "sha256:77f345ce54f14009e9cd0f22ffe0b7129cb04dbd4f3cb3341fadc6f626ddfc3c"
              }
            ]
          }
        ],
        "note": "AWS discloses its pricing models, including pay-as-you-go, flat-rate, and Savings Plans commitments, and provides catalog prices via the AWS Price List APIs and service pricing pages."
      },
      {
        "stage": "pay",
        "signal_code": "payment_authorization",
        "selector_group_id": "payment_authorization-primary",
        "value": "unknown",
        "observed_at": "2026-08-20T15:57:05.033Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [],
        "note": "The evidence outlines account creation requirements and payment method management in the console, but it does not document a payment authorization rail supporting scoped agent delegation or human authorization with receipts."
      },
      {
        "stage": "pay",
        "signal_code": "self_service_purchase",
        "selector_group_id": "self_service_purchase-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:57:05.033Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "account-plan-activation"
          },
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:4448d34dbfd2861555f4ba17a26769e0dbc29546e63e0abfae9fa80515073b7f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
              "sha256:9ac51e9b38c11626e509214a07a922c7aaa8783487d3c4a0d7556aef8fa63fc2",
              "sha256:d2e2a11bafda3e1bb0924fc29c3a86fe0240ec089d7ccdd7c217618c213149e9"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "account-plan-activation"
            },
            "locators": [
              {
                "artifact_digest": "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
                "start_byte": 7902,
                "end_byte": 8702,
                "value_digest": "sha256:edf66ba7b6ec8e7c5096dc120732564f85478246f0f544c05448a87549a67c03"
              },
              {
                "artifact_digest": "sha256:950c996135ade0551e7cb0397c09aaaa3a07eba7eeeff08bdb236d942b8f5cf7",
                "start_byte": 8703,
                "end_byte": 9503,
                "value_digest": "sha256:0ae98688b7bf727974121338c6abdf01d66d604b2787817bc7f221c7a67b2622"
              }
            ]
          }
        ],
        "note": "AWS documents a direct self-service path to create an account, enter billing information, select a Support plan, and complete sign-up to activate services without vendor intervention."
      },
      {
        "stage": "provision",
        "signal_code": "access_material_delivery",
        "selector_group_id": "access_material_delivery-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:46.892Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "temporary-credentials"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d5e7d621d3145719abb8438552f34b7d0007f44105d0c2aa37fc9c27e04602f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
              "sha256:93514a0a476768c920d66df71a6156c959d07def7e72b93a534ca3f97a341d2f",
              "sha256:e045f492f8225ce8b282d342a90f839e5b7d27d7a0351778b3a21d7c46bc455d"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "temporary-credentials"
            },
            "locators": [
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 6689,
                "end_byte": 7487,
                "value_digest": "sha256:2cedca06f6a7a6f2747e30bed4edd77a884b45846935617a9d16a33fabd6cded"
              }
            ]
          }
        ],
        "note": "AWS STS API operations create temporary security credentials that include an access key ID, a secret key, and a session token, which applications or users can use to access resources."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_completion",
        "selector_group_id": "provisioning_completion-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:12.635Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "cloud-control-getting-started"
          },
          {
            "node_kind": "resource",
            "node_id": "cloud-control-status-api"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:00a387782e955c7ffe26a0a8978c52bd1d8d2c316b9d8ca5c155f5b72e352c0b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:03b78e70298030f03ea81c386f49a20f3945a9e4031cce864592b06dfe494c7f",
              "sha256:046562658938f4c76f43227a46786bc5c7c51c2eda89891eb406a2922dc0fb50",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-getting-started"
            },
            "locators": [
              {
                "artifact_digest": "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409",
                "start_byte": 4028,
                "end_byte": 4818,
                "value_digest": "sha256:d155357bf3432061a072105ea41e0a21978ec27b1c3dfc3b4789c07926d00aae"
              }
            ]
          }
        ],
        "note": "AWS Cloud Control API provides get-resource-request-status to poll request progress using a RequestToken, returning an OperationStatus set to SUCCESS upon successful completion."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_operability",
        "selector_group_id": "provisioning_operability-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:46.581Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "cloud-control-create-api"
          },
          {
            "node_kind": "resource",
            "node_id": "cloud-control-getting-started"
          },
          {
            "node_kind": "resource",
            "node_id": "cloud-control-status-api"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:be32976a5312bb87bc6cfc331c2e9e9a07252fe1a18ff54d6b97f89437bc5ba4",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:a92df1b87a00176ea4ace80936387b7d0ffe02b18d99935b17111da92c0461d9",
              "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
              "sha256:f5096e17a39e29aa6a3bac6df4a7975fdc4b813f5539035a1bdf0b3be7ccfa73"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-create-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
                "start_byte": 6080,
                "end_byte": 6877,
                "value_digest": "sha256:7ecd9fe25341c6720540bd124b2dc2da24361c3cc7850d1edc1ad947b48c46f3"
              }
            ]
          }
        ],
        "note": "AWS Cloud Control API provides a CreateResource operation to initiate resource creation programmatically."
      },
      {
        "stage": "operate",
        "signal_code": "credential_lifecycle",
        "selector_group_id": "credential_lifecycle-primary",
        "value": "partial",
        "observed_at": "2026-08-20T15:56:46.892Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "temporary-credentials"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d5e7d621d3145719abb8438552f34b7d0007f44105d0c2aa37fc9c27e04602f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:768eeaa382ef166b362f63ae817f43987c8c9623340a0dabe4aff91de6bee2ef",
              "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
              "sha256:e045f492f8225ce8b282d342a90f839e5b7d27d7a0351778b3a21d7c46bc455d"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "temporary-credentials"
            },
            "locators": [
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 17791,
                "end_byte": 18590,
                "value_digest": "sha256:154f2b6f2a57b34052332ab102a796ddebdad7724b251388a5a4a068cb9e36d8"
              },
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 5088,
                "end_byte": 5887,
                "value_digest": "sha256:02ce800de780c67baf91380b42e314ea2a06c99fd3f0aa3c05b56d7d10286b4e"
              }
            ]
          }
        ],
        "note": "AWS STS documentation establishes that agents can request temporary credentials with specified validity durations using operations like GetFederationToken or AssumeRole. However, the evidence does not detail complete agent-executable revocation, compromise response, or recovery procedures."
      },
      {
        "stage": "operate",
        "signal_code": "failure_contract",
        "selector_group_id": "failure_contract-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:46.581Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "cloud-control-create-api"
          },
          {
            "node_kind": "resource",
            "node_id": "cloud-control-status-api"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:be32976a5312bb87bc6cfc331c2e9e9a07252fe1a18ff54d6b97f89437bc5ba4",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:a92df1b87a00176ea4ace80936387b7d0ffe02b18d99935b17111da92c0461d9",
              "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
              "sha256:cd750538a55716b1e16eacf632b1dd4c3fbb1d33f030e9c96cf30e2230006051"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-create-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
                "start_byte": 10794,
                "end_byte": 11587,
                "value_digest": "sha256:7bd94c2b2afe4281a42aa3a1c0b4f443f3f16745b58c840e42f8571caf796f5c"
              },
              {
                "artifact_digest": "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
                "start_byte": 6878,
                "end_byte": 7677,
                "value_digest": "sha256:82a735fc2fd0426d7a90f2190adc58e40315995b3706cbcd5d8f86c072c09e01"
              }
            ]
          }
        ],
        "note": "AWS Cloud Control API documents idempotency via client tokens (valid for 36 hours), retries, and detailed HTTP status codes and error types (such as ThrottlingException, ConcurrentOperationException, and HandlerFailureException). Status tracking is supported via GetResourceRequestStatus using a RequestToken."
      },
      {
        "stage": "operate",
        "signal_code": "operation_authentication",
        "selector_group_id": "operation_authentication-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:46.892Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "temporary-credentials"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d5e7d621d3145719abb8438552f34b7d0007f44105d0c2aa37fc9c27e04602f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
              "sha256:9970c4422705385f83b3d1c95d40240e3845caba9848672a5965ae452cb74906",
              "sha256:e045f492f8225ce8b282d342a90f839e5b7d27d7a0351778b3a21d7c46bc455d"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "temporary-credentials"
            },
            "locators": [
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 5088,
                "end_byte": 5887,
                "value_digest": "sha256:02ce800de780c67baf91380b42e314ea2a06c99fd3f0aa3c05b56d7d10286b4e"
              },
              {
                "artifact_digest": "sha256:87b23d0bcdf7bf55aa985f86f96ecb5bb3f21837b1861c0f0708661103ded611",
                "start_byte": 5888,
                "end_byte": 6688,
                "value_digest": "sha256:29ada5cfce30fef12de71992b383e58d2415ac9d9df1da3a8fc9c43515c2f3b6"
              }
            ]
          }
        ],
        "note": "AWS STS operations allow requesting temporary security credentials (access key ID, secret key, session token) and applying session policies to scope permissions programmatically for service requests."
      },
      {
        "stage": "operate",
        "signal_code": "operation_contract",
        "selector_group_id": "operation_contract-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:58.460Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "cloud-control"
          },
          {
            "node_kind": "interface",
            "node_id": "public-pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:43267f42a02fda38230b8440c83ed3cd49871a0d4c34644eaffabbbb86a5b5d3",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2988eb874aac2ad28045daff5e7ef70f368c889cc9c64e821ce440fe3a354726",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5fbe4899b30bcdf3d1c810ea22bbb449c947d294f66a4c6dce263d62e5aa963a",
              "sha256:6fd2343b49ffc91884ddbca07b941781fd73b51fdf8f0b44b2459254ee1a0fe4"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-resource-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:5fbe4899b30bcdf3d1c810ea22bbb449c947d294f66a4c6dce263d62e5aa963a",
                "start_byte": 3239,
                "end_byte": 4035,
                "value_digest": "sha256:2a50ff2e7e6c0594277ccdc4e5e70c1ca06674b69252eeded39c4799220de3b8"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bae1ddaef0f4a20e3083b219d8cabc498e573cd4c656475e9b8ca0acf8994cf5",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5ce3083f8d4eaae0bbae481d740e59d01deac9d01c01f1c47c8094a15f85f106",
              "sha256:b3e5b450fd575b21b32911c10cebadb803e891feedb4d21c071a4c1dfcef12ef"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "price-list-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
                "start_byte": 5043,
                "end_byte": 5841,
                "value_digest": "sha256:b38c2ec18980c425eb1553abb45e9a64850cb3572fd880918dedc40cb71cec53"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f691eb10c11e872f359f58b1597637882505e552345914d0b4e5201037243bbe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:40a3bbea160007fbf797b0c3790473a58dc8ebb583ecaf1c0da0dcbc57691be3",
              "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
              "sha256:942f173079dfd4c678ba156634f9bcf58bf47453ad04143d1e61475809c74f8e",
              "sha256:d174d08757031537f850b60c444500450db8daed05bcb56f031de32b5ae0b985"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
                "start_byte": 20973,
                "end_byte": 21771,
                "value_digest": "sha256:b0f877a7745ec8c62108906a193180bb0f69272add0aaea0267fbc651e21ccd9"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e16ba2e5e04021a56c5e3f79de62976b01da952c5b85e0f7cb6c838325e58202",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:b602f2e7272c46399f7c405de40707bd766ce58a5716783e072c6120026beb88",
              "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
              "sha256:fb707b069eb5a8aaa0970fbfc2458949281107964c378ae7520d503fcddbeb21"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-overview"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
                "start_byte": 4277,
                "end_byte": 5064,
                "value_digest": "sha256:532a9520252bb0407b949f40b83a124eb58d1f8cb6d3e2aa52ca3e244986fa47"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f9986d5d2283091d060881b156ee22ea5b3af8ecf834733d62a0b4b6f26c9d98",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0c6518dc62f859b1f557f70fa72657168528f42550734051f97d44f1f365e446",
              "sha256:13c079e12e5a21bbb2932831e53703b76f47338be4efb11e108e149e90be0afc",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:90b0ff90b47b0eebf212dc2afc3fcd4fb7b443bdd65788440b6079bd8e9f05ac"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-status-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:0c6518dc62f859b1f557f70fa72657168528f42550734051f97d44f1f365e446",
                "start_byte": 6842,
                "end_byte": 7641,
                "value_digest": "sha256:34743a9b98497d47f5d2890624e172153fb1c1f703837f354f327016db9e0944"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:00a387782e955c7ffe26a0a8978c52bd1d8d2c316b9d8ca5c155f5b72e352c0b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:03b78e70298030f03ea81c386f49a20f3945a9e4031cce864592b06dfe494c7f",
              "sha256:21ab43e5f3487d6f3f16834d8418bd333ceba9a4dd5354e5bc0fe58373c38ffb",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-getting-started"
            },
            "locators": [
              {
                "artifact_digest": "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409",
                "start_byte": 3230,
                "end_byte": 4027,
                "value_digest": "sha256:ad147c28946892e626af58c2b10a48c58b750ef79a484908626cabd98be192d0"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:553579b27c9d4de2004c7dc4ff77266b112683417444451701a0a4b5dca16834",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:60eab99edcf9404701bd7807b1116f60fca038e2310ea763be0312318f5d969c",
              "sha256:6edcb5b1642a59e7f9146a3f18b0002e115738ba9ec864f7d704428a1073fb22",
              "sha256:9e62fc61704bfe22b1829c75c7e471e76aa521be047eae27b8e966788307ae45"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-endpoints"
            },
            "locators": [
              {
                "artifact_digest": "sha256:6edcb5b1642a59e7f9146a3f18b0002e115738ba9ec864f7d704428a1073fb22",
                "start_byte": 3343,
                "end_byte": 4089,
                "value_digest": "sha256:6388a7db9d972c003e64702466705889048c399fb4b70b8babcdb8f99ca66ec2"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:be32976a5312bb87bc6cfc331c2e9e9a07252fe1a18ff54d6b97f89437bc5ba4",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:a92df1b87a00176ea4ace80936387b7d0ffe02b18d99935b17111da92c0461d9",
              "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
              "sha256:f5096e17a39e29aa6a3bac6df4a7975fdc4b813f5539035a1bdf0b3be7ccfa73"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-create-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
                "start_byte": 6080,
                "end_byte": 6877,
                "value_digest": "sha256:7ecd9fe25341c6720540bd124b2dc2da24361c3cc7850d1edc1ad947b48c46f3"
              }
            ]
          }
        ],
        "note": "Essential operations and pricing endpoints across Cloud Control API, IAM STS, and AWS Price List have stable request/response schemas, JSON/HTTP parameters, and defined operational effects."
      },
      {
        "stage": "operate",
        "signal_code": "target_interface_access",
        "selector_group_id": "target_interface_access-primary",
        "value": "yes",
        "observed_at": "2026-08-20T15:56:58.460Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "cloud-control"
          },
          {
            "node_kind": "interface",
            "node_id": "public-pricing"
          }
        ],
        "assessment_method": {
          "name": "public-http-semantic-assessment",
          "version": "2026-08-20",
          "method_digest": "sha256:f7c4219d9b75928a6bcff8d125dc30bbc718673e579a66f00d832172e8c9d43d"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f9986d5d2283091d060881b156ee22ea5b3af8ecf834733d62a0b4b6f26c9d98",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0c6518dc62f859b1f557f70fa72657168528f42550734051f97d44f1f365e446",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:90b0ff90b47b0eebf212dc2afc3fcd4fb7b443bdd65788440b6079bd8e9f05ac",
              "sha256:d0afdc75fab271dee8be147507c465d82c274921ed41e4749dada34615b4bb93"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-status-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:0c6518dc62f859b1f557f70fa72657168528f42550734051f97d44f1f365e446",
                "start_byte": 6052,
                "end_byte": 6841,
                "value_digest": "sha256:f78d9b5d961c83efb7c16d571b324713ccca03e7fa5e73f923c7c69b2b206c28"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:f691eb10c11e872f359f58b1597637882505e552345914d0b4e5201037243bbe",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:359bafd9aef7a1bc993dc41e88e47ae6f0db462fb6af3799088204824084cd6a",
              "sha256:40a3bbea160007fbf797b0c3790473a58dc8ebb583ecaf1c0da0dcbc57691be3",
              "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
              "sha256:d174d08757031537f850b60c444500450db8daed05bcb56f031de32b5ae0b985"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:524880a25bc99a7986832fcbeb54b1e83572ca41d5a0b8681352871cf84b94bf",
                "start_byte": 23362,
                "end_byte": 24162,
                "value_digest": "sha256:fdcad2a4ce79b9810cc2adb5f6a89ba8c0b7f0dcec359ea2f08b03ed1b51e3c4"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e16ba2e5e04021a56c5e3f79de62976b01da952c5b85e0f7cb6c838325e58202",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:59fd9c80829092e1d12daa3b8dc52d960398cd17bcfc809146582fb07715d046",
              "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
              "sha256:fb707b069eb5a8aaa0970fbfc2458949281107964c378ae7520d503fcddbeb21"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-overview"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c54cf3b4a65fe2388f5a749d69692c763a55cac89b02db18b9a6d7a00332568d",
                "start_byte": 6655,
                "end_byte": 7417,
                "value_digest": "sha256:6a4885bb3e222f35df08a672dd77712d0f6e2a12ab7af12964d0ffa29c107949"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:43267f42a02fda38230b8440c83ed3cd49871a0d4c34644eaffabbbb86a5b5d3",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2988eb874aac2ad28045daff5e7ef70f368c889cc9c64e821ce440fe3a354726",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5fbe4899b30bcdf3d1c810ea22bbb449c947d294f66a4c6dce263d62e5aa963a",
              "sha256:6fd2343b49ffc91884ddbca07b941781fd73b51fdf8f0b44b2459254ee1a0fe4"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-resource-operations"
            },
            "locators": [
              {
                "artifact_digest": "sha256:5fbe4899b30bcdf3d1c810ea22bbb449c947d294f66a4c6dce263d62e5aa963a",
                "start_byte": 3239,
                "end_byte": 4035,
                "value_digest": "sha256:2a50ff2e7e6c0594277ccdc4e5e70c1ca06674b69252eeded39c4799220de3b8"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bae1ddaef0f4a20e3083b219d8cabc498e573cd4c656475e9b8ca0acf8994cf5",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5ce3083f8d4eaae0bbae481d740e59d01deac9d01c01f1c47c8094a15f85f106",
              "sha256:7514f4dff2140ecfcc063b4776b414b3772357a8bf933c31c6e6f404e68c4264"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "price-list-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2b9ff113600c9b1b6f00448388417e587380966594ec9a7cdaef6697b1500c3d",
                "start_byte": 6643,
                "end_byte": 7442,
                "value_digest": "sha256:52f322f1b6034b4c7b5762b9cf374f4fc0186aee5a4faa88af8c1164aebf9b43"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:00a387782e955c7ffe26a0a8978c52bd1d8d2c316b9d8ca5c155f5b72e352c0b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:03b78e70298030f03ea81c386f49a20f3945a9e4031cce864592b06dfe494c7f",
              "sha256:21ab43e5f3487d6f3f16834d8418bd333ceba9a4dd5354e5bc0fe58373c38ffb",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-getting-started"
            },
            "locators": [
              {
                "artifact_digest": "sha256:62e33269a822f1f8faddcc4b9d11b3b7f8f39fada804b2babb0f8b29e3d54409",
                "start_byte": 3230,
                "end_byte": 4027,
                "value_digest": "sha256:ad147c28946892e626af58c2b10a48c58b750ef79a484908626cabd98be192d0"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:553579b27c9d4de2004c7dc4ff77266b112683417444451701a0a4b5dca16834",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:60eab99edcf9404701bd7807b1116f60fca038e2310ea763be0312318f5d969c",
              "sha256:6edcb5b1642a59e7f9146a3f18b0002e115738ba9ec864f7d704428a1073fb22",
              "sha256:9e62fc61704bfe22b1829c75c7e471e76aa521be047eae27b8e966788307ae45"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-endpoints"
            },
            "locators": [
              {
                "artifact_digest": "sha256:6edcb5b1642a59e7f9146a3f18b0002e115738ba9ec864f7d704428a1073fb22",
                "start_byte": 3343,
                "end_byte": 4089,
                "value_digest": "sha256:6388a7db9d972c003e64702466705889048c399fb4b70b8babcdb8f99ca66ec2"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:be32976a5312bb87bc6cfc331c2e9e9a07252fe1a18ff54d6b97f89437bc5ba4",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:a92df1b87a00176ea4ace80936387b7d0ffe02b18d99935b17111da92c0461d9",
              "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
              "sha256:f5096e17a39e29aa6a3bac6df4a7975fdc4b813f5539035a1bdf0b3be7ccfa73"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "cloud-control-create-api"
            },
            "locators": [
              {
                "artifact_digest": "sha256:a9ad74c36631d4ebd75c5202fa73eef0d4567c7e7baa32f5886054bcf38cfd91",
                "start_byte": 6080,
                "end_byte": 6877,
                "value_digest": "sha256:7ecd9fe25341c6720540bd124b2dc2da24361c3cc7850d1edc1ad947b48c46f3"
              }
            ]
          }
        ],
        "note": "All evaluated targets provide documented programmatic interfaces, including HTTP APIs, AWS CLI commands, and SDK implementations."
      }
    ],
    "revision_digest": "sha256:2db2e5c73843c5b00c46a7f2c4fc745cd83e5a79588fb9fd4f371f92e7ae1c41"
  }
}
