{
  "api_contract": "sourcey.catalog-api/v1",
  "release_id": "sha256:5f55a0147eca9a82d821b7cfb73339dd8059c146b9acbb6ed66c9e3d40a8e1b0",
  "artifact_sha256": "sha256:ec393385ec4e7be15a393d925f0df78d54a12787f2995a84fad1b570583dac06",
  "data": {
    "revision_contract": "sourcey.agent-readiness-revision/v1alpha1",
    "agent_readiness_profile_id": "arp_01kzf0m4x62a9z5fqb4kvp1hme",
    "entity_id": "ent_01kyh8jtf535570d9z2bng6j1t",
    "scope": {
      "product": {
        "key": "cloudflare-developer-platform",
        "name": "Cloudflare Developer Platform"
      },
      "funnel": {
        "key": "api-resource-management",
        "name": "API resource management"
      }
    },
    "catalog_binding": {
      "base_release_id": "sha256:8986cb1640fd748dd005e5c94c7b02d3f44a3d39ff6b72573091bd81af84c61e",
      "entity_revision_digest": "sha256:cddeb11506db30b6ffb13fcff407b1931f123a1eb2cc8edf5ca023ba03c71100"
    },
    "declaration_revision_digest": "sha256:7c2f84b77c28e1a17072cd1a4f83e907639c92be71d63eb32d5de89f41f38652",
    "declaration": {
      "declaration_id": "declaration_cloudflare_api_resource_management",
      "provenance": {
        "repository": "sourcey/agent-ready-services",
        "commit": "ca383f7867c18d91567fcb8326be55f7411d9554",
        "path": "entities/cl/cloudflare.yaml",
        "git_blob_oid": "945a41470397eec65308a077818a125d882b4fb6",
        "blob_digest": "sha256:8f7c08b148f13ff27375b1eadb4dd67641c32716a13168bcf8468e3801bdcaf7"
      },
      "status": "community_declared"
    },
    "lifecycle": "active",
    "effective_from": "2026-09-06T08:47:58Z",
    "signals": [
      {
        "stage": "evaluate",
        "signal_code": "eligibility_decidability",
        "selector_group_id": "eligibility_decidability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:15.896Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:ea375a3779249f40e9c2654788e07a26e0ed20fdcd9ed118a37f7af35d20ce8e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2854ac9685b840e9ad804ef9377d6f473fed7fae6ac7bf51ba3f7ff18738c6ad",
              "sha256:45025f32a295a35c501b67a7ceb032aaee921e5336f919b05a5ebcbd20102853",
              "sha256:655c7a27b1e1fe2a70ad0cc6dccb85faaf630aab330ecd0a7da61fbe49a4e829",
              "sha256:df46fcd8b4d2bdb37f1e856b5d3157cc7bd0e4c76e3700a1b167cca5115e2af2"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2854ac9685b840e9ad804ef9377d6f473fed7fae6ac7bf51ba3f7ff18738c6ad",
                "start_byte": 17778,
                "end_byte": 18606,
                "value_digest": "sha256:3372c950e10cdb73cae578274376fb2186b5f55951d9f36b6917e13e398c3eb2"
              }
            ]
          }
        ],
        "note": "The Self-Serve Subscription Agreement explicitly states that entering into the agreement requires authority to bind the entity represented, and that the agreement becomes effective when accepted, accessed, or used."
      },
      {
        "stage": "evaluate",
        "signal_code": "pricing_decidability",
        "selector_group_id": "pricing_decidability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:27.917Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "plans"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3ae8a27221aa2a74f87bf7e6f58c46337ea56082c7b7ac46602f9c1fa1f785f0",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:463c47ac0267d5f9db5a6e384f2e3f743c9691997416a518d0c3f6f97e64d66b",
              "sha256:6d4c354856203f2547cf10db6df9c48949c380bb240c80fcb5ad9314f43c71f1",
              "sha256:cedd67addead5d37eaf1f0d4c6e3799a50b4613342eb962d99086be664c24f94",
              "sha256:e7f14098012d3cefcaf2278aadeb86ff0fe141a469375fe19b42c0d15b6d87f4"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "plans"
            },
            "locators": [
              {
                "artifact_digest": "sha256:cedd67addead5d37eaf1f0d4c6e3799a50b4613342eb962d99086be664c24f94",
                "start_byte": 9227,
                "end_byte": 10017,
                "value_digest": "sha256:823193ff715baf5da9ce1ed17e092ae6eb1d56962b3909469eff6a3a1148e3a0"
              }
            ]
          }
        ],
        "note": "Cloudflare provides explicit, transparent pricing options in USD for plans including Free ($0/month), Pro ($20/mo billed annually or $25/mo billed monthly), and Business ($200/mo billed annually or $250/mo billed monthly)."
      },
      {
        "stage": "evaluate",
        "signal_code": "service_discovery",
        "selector_group_id": "service_discovery-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:07.161Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3e8c629230ca53ab759c7d49854f6a332dcbc0a5b5303d89192c044656fa1738",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ace6e34f5a5f4a5a9e1061e93bdec98ca2db902ba868a99a3279d539d8fcbf5",
              "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
              "sha256:6cd4c6f2f12e3de717516083d487af7da0436430b7d6bc3880bffcde14dbaa7f",
              "sha256:d9ed73f354c3fae075b8fff8acc7518bbae622bda9b1b660ed59330408ae38a1"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 0,
                "end_byte": 346,
                "value_digest": "sha256:54da4a1df19755048bf74b6bbc68b73d66a084c50cb8d09e9901be99e361a397"
              },
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 397821,
                "end_byte": 398618,
                "value_digest": "sha256:4604185874bc6b54a203d3a4e86ca9f293baba45e5e141214bfa09108c31bd70"
              }
            ]
          }
        ],
        "note": "The Cloudflare API reference documentation explicitly exposes stable entrypoints and methods, such as Upload Worker Module, and lists public API navigation and endpoints."
      },
      {
        "stage": "evaluate",
        "signal_code": "structured_evaluation_discovery",
        "selector_group_id": "structured_evaluation_discovery-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:07.161Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          },
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e3de0256106cc30f005dec03219e19ca941c86ac35eabc17c49e6f6bab2c4bed",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:7a294831bb8c00a8ae5e3ec91e175438942cb08c0375e417f6600a2704370a22",
              "sha256:be02e47861c92660c480c5089324b3e4722282465157551936a0f6793008ea09",
              "sha256:befb63642d55d53014382a19ebdd263a618b107fc247ea9b831b01f1a5c4a891",
              "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-tokens"
            },
            "locators": [
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 15250,
                "end_byte": 16043,
                "value_digest": "sha256:03184fd4bc91ba2b95a7491d8126276017516d67ecb87da61737ee1b60fa9b81"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3e8c629230ca53ab759c7d49854f6a332dcbc0a5b5303d89192c044656fa1738",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ace6e34f5a5f4a5a9e1061e93bdec98ca2db902ba868a99a3279d539d8fcbf5",
              "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
              "sha256:6cd4c6f2f12e3de717516083d487af7da0436430b7d6bc3880bffcde14dbaa7f",
              "sha256:6e3255b7f8c94b13ad9a789b895bc78e972dc8469034ea1539d172c273afcb8f"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 467666,
                "end_byte": 468465,
                "value_digest": "sha256:fdcc84c5f27333bbd1df53734480865b44a63477e4acf2ca616d9a05f935f214"
              }
            ]
          }
        ],
        "note": "Cloudflare explicitly provides machine-readable structured discovery artifacts, including exporting OpenAPI schemas for API operations and pointing to structured documentation files (llms.txt)."
      },
      {
        "stage": "evaluate",
        "signal_code": "terms_access",
        "selector_group_id": "terms_access-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:15.896Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:ea375a3779249f40e9c2654788e07a26e0ed20fdcd9ed118a37f7af35d20ce8e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2854ac9685b840e9ad804ef9377d6f473fed7fae6ac7bf51ba3f7ff18738c6ad",
              "sha256:45025f32a295a35c501b67a7ceb032aaee921e5336f919b05a5ebcbd20102853",
              "sha256:655c7a27b1e1fe2a70ad0cc6dccb85faaf630aab330ecd0a7da61fbe49a4e829",
              "sha256:934e3fe427af58cd86c9ffe28c8a251fc32598cea6606bb4495c48e04850fc99"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:2854ac9685b840e9ad804ef9377d6f473fed7fae6ac7bf51ba3f7ff18738c6ad",
                "start_byte": 17778,
                "end_byte": 18606,
                "value_digest": "sha256:3372c950e10cdb73cae578274376fb2186b5f55951d9f36b6917e13e398c3eb2"
              },
              {
                "artifact_digest": "sha256:2854ac9685b840e9ad804ef9377d6f473fed7fae6ac7bf51ba3f7ff18738c6ad",
                "start_byte": 18607,
                "end_byte": 19410,
                "value_digest": "sha256:64ab803d661fc83933d694e82f6fbc3029f548cc8957d91af0547701ee7add77"
              }
            ]
          }
        ],
        "note": "The complete Self-Serve Subscription Agreement terms governing Cloudflare's Services and APIs are accessible, readable, and retrievable."
      },
      {
        "stage": "evaluate",
        "signal_code": "verified_web_agent_access",
        "selector_group_id": "verified_web_agent_access-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:50:07.161Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          },
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The provided evidence mentions robots.txt rules API endpoints and crawlers in documentation, but does not provide the explicit web-agent access permissions or disallows for the assessed resources."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_control_operability",
        "selector_group_id": "access_control_operability-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:32.506Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The registration capture at dash.cloudflare.com returned a bot-verification interstitial ('Just a moment... Performing security verification') rather than the sign-up form; the access flow itself was not observed."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_entrypoint_stability",
        "selector_group_id": "access_entrypoint_stability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:26.333Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-ad6794a9ae3bd4ff2735c8265a155b678454af08c375d85510b9b8fa1fe2753c"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "direct_observation",
            "captures": [
              {
                "retained_capture_digest": "sha256:b0937a3e489586c4587f76974e3181650b64c8043a1717969ab594871cbca5db",
                "capture_rung": "headless"
              }
            ],
            "artifact_digests": [
              "sha256:5824a99e258a115614543cda3d6657e55071eea2d1f0483bd5be6acb20c2f1d2",
              "sha256:6ed1b4206163be1a154bf61ea987d57e0cc93849795dadc412233d2d3b0b9f3e",
              "sha256:9289c398bba179850028360232246307ca79bd0f2e082149d3a417b67876ce3d",
              "sha256:99432c4172c56f9c94abd9326f2ef97802c0a66313ef7c9bf45f12965439491c",
              "sha256:aa940afb44ef882ad12874f12ccc60b59c2d5bef19dc432989fcbc9e701b13e7",
              "sha256:e532a0b349a17cb965cd7e360fb0b12dcc0ae1ec6b91158573c326bbe0544b01"
            ],
            "locators": [
              {
                "artifact_digest": "sha256:aa940afb44ef882ad12874f12ccc60b59c2d5bef19dc432989fcbc9e701b13e7",
                "start_byte": 0,
                "end_byte": 801,
                "value_digest": "sha256:8dc394210dc9c8b9f3bd2e0a2eef34273f34671e0e9b7c7ce9e2abce76178eff"
              }
            ]
          }
        ],
        "note": "A stable canonical route to access Cloudflare exists at the login documentation page."
      },
      {
        "stage": "sign_up",
        "signal_code": "captcha_compatible_access",
        "selector_group_id": "captcha_compatible_access-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:32.506Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          },
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-ad6794a9ae3bd4ff2735c8265a155b678454af08c375d85510b9b8fa1fe2753c"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The registration capture at dash.cloudflare.com returned a bot-verification interstitial ('Just a moment... Performing security verification') rather than the sign-up form; the access flow itself was not observed."
      },
      {
        "stage": "sign_up",
        "signal_code": "delegated_identity_access",
        "selector_group_id": "delegated_identity_access-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:00.607Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "direct_observation",
            "captures": [
              {
                "retained_capture_digest": "sha256:e3de0256106cc30f005dec03219e19ca941c86ac35eabc17c49e6f6bab2c4bed",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:7a294831bb8c00a8ae5e3ec91e175438942cb08c0375e417f6600a2704370a22",
              "sha256:befb63642d55d53014382a19ebdd263a618b107fc247ea9b831b01f1a5c4a891",
              "sha256:c4134d4c9f3c61b804157fce7bfe3aa7f16c7f7ab0db69713b82140d75809d01",
              "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95"
            ],
            "locators": [
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 18446,
                "end_byte": 19265,
                "value_digest": "sha256:7e5766559b224dbee2b4f101536e5f72fc8135ce664815c7ae225ee6435cecdd"
              },
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 20067,
                "end_byte": 20865,
                "value_digest": "sha256:4ecffc4238770a3554f78225294f8b662ce3cd181b98a7a4950626ad553faf2a"
              }
            ]
          }
        ],
        "note": "Cloudflare provides scoped, revocable API tokens with defined permissions, but token secret delivery requires manual user copying from the dashboard."
      },
      {
        "stage": "sign_up",
        "signal_code": "phone_verification_compatible",
        "selector_group_id": "phone_verification_compatible-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:32.506Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-ad6794a9ae3bd4ff2735c8265a155b678454af08c375d85510b9b8fa1fe2753c"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The retained evidence does not state whether phone verification is required or optional for account access."
      },
      {
        "stage": "pay",
        "signal_code": "checkout_operability",
        "selector_group_id": "checkout_operability-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:50:27.512Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-6b1ec9edf6e5bc9be8277ad21ed6b287369ef3921b9c2e9d3e880f4b575bf7c9"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The retained evidence describes adding primary and additional payment methods in the Cloudflare dashboard, but it does not establish an API, protocol, or web flow for deterministic checkout construction, approval handoff, and resumption."
      },
      {
        "stage": "pay",
        "signal_code": "commitment_disclosure",
        "selector_group_id": "commitment_disclosure-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:27.917Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "plans"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3ae8a27221aa2a74f87bf7e6f58c46337ea56082c7b7ac46602f9c1fa1f785f0",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:6d4c354856203f2547cf10db6df9c48949c380bb240c80fcb5ad9314f43c71f1",
              "sha256:cedd67addead5d37eaf1f0d4c6e3799a50b4613342eb962d99086be664c24f94",
              "sha256:e7f14098012d3cefcaf2278aadeb86ff0fe141a469375fe19b42c0d15b6d87f4",
              "sha256:f86183fe30b97ce82f21c7bc64fbe9a3a51f7a3661cd5d76d17de4833b209843"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "plans"
            },
            "locators": [
              {
                "artifact_digest": "sha256:cedd67addead5d37eaf1f0d4c6e3799a50b4613342eb962d99086be664c24f94",
                "start_byte": 9227,
                "end_byte": 10017,
                "value_digest": "sha256:823193ff715baf5da9ce1ed17e092ae6eb1d56962b3909469eff6a3a1148e3a0"
              },
              {
                "artifact_digest": "sha256:cedd67addead5d37eaf1f0d4c6e3799a50b4613342eb962d99086be664c24f94",
                "start_byte": 12400,
                "end_byte": 13193,
                "value_digest": "sha256:90e3e6ec6b4a61bd628fe4de348cd3172ff410b3093f0fa0a0561bec1c03b6e6"
              }
            ]
          }
        ],
        "note": "Cloudflare discloses commercial commitments for its plans and products, including free ($0/month), Pro ($20/mo billed annually or $25/mo billed monthly), Business ($200/mo billed annually or $250/mo billed monthly), and Workers usage rates ($0.30 / million requests, $0.02 / million CPU ms)."
      },
      {
        "stage": "pay",
        "signal_code": "payment_authorization",
        "selector_group_id": "payment_authorization-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:50:27.512Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-6b1ec9edf6e5bc9be8277ad21ed6b287369ef3921b9c2e9d3e880f4b575bf7c9"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "While documentation lists payment methods such as credit cards, PayPal, Apple Pay, Google Pay, and Stripe Link along with 3D Secure authentication, the retained text does not define a payment authorization mechanism with scoped agent delegation or explicit human-confirmed authorization with receipts."
      },
      {
        "stage": "pay",
        "signal_code": "self_service_purchase",
        "selector_group_id": "self_service_purchase-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:51:12.789Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "billing-checkout"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-6b1ec9edf6e5bc9be8277ad21ed6b287369ef3921b9c2e9d3e880f4b575bf7c9"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:67b54cb106ba5912b4f383fdd8adce8d14bae1e5c404451b03df3f43bb8edf9a",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0a5611077dc2ac40cab288a72f2cf3a68c75894e86aa4980d6082b7b2025431c",
              "sha256:16ada4b73239ef4e3b138ea27e0830c35b868c96d782e383b97896655f7a6a42",
              "sha256:c0e6b82d901dce70e79fd93a18aa3288fecbffca45ec34c50b8a8fa694f36740",
              "sha256:de992e9820e20466eb6845661834452454c15df5dd718ec2f1fe3a7ae7ba210a"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "readiness-6b1ec9edf6e5bc9be8277ad21ed6b287369ef3921b9c2e9d3e880f4b575bf7c9"
            },
            "locators": [
              {
                "artifact_digest": "sha256:0a5611077dc2ac40cab288a72f2cf3a68c75894e86aa4980d6082b7b2025431c",
                "start_byte": 9487,
                "end_byte": 10276,
                "value_digest": "sha256:b88b10ee85cbb1327a94b693e6d200bd58457053f70fc3b9bfb683a6df1d3679"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:555b9f9d30fb4b89108fbb9c0d481c4a7d688c688e911952a60cb9c071254464",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:104b83fba44b1f535f47eceb73556e2eff34b23649993cf0336f85ba0205def6",
              "sha256:2a96018c1767ab2ea34d78c36eca50fafcdb5109616efd25624af85049d1805f",
              "sha256:7f472baa0f58a3428fbb1a688def537d96287eb3d7a7823797a8552eda2b79c6",
              "sha256:f8716f1ac941f8a7734fd5dde0a5a832b3ef8727faf9e05a8ec5a35cd1f5ee6f"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "billing-checkout"
            },
            "locators": [
              {
                "artifact_digest": "sha256:7f472baa0f58a3428fbb1a688def537d96287eb3d7a7823797a8552eda2b79c6",
                "start_byte": 8825,
                "end_byte": 9636,
                "value_digest": "sha256:b6d79163cd2717fcff9be057d3bc608462d0f38ec46eee79b34d6fc8fb79b450"
              }
            ]
          }
        ],
        "note": "Documentation establishes self-service management paths to purchase Cloudflare products, add payment methods, or upgrade domain plans in the dashboard, but contract plans for mission-critical applications require custom enterprise billing."
      },
      {
        "stage": "provision",
        "signal_code": "access_material_delivery",
        "selector_group_id": "access_material_delivery-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:00.607Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e3de0256106cc30f005dec03219e19ca941c86ac35eabc17c49e6f6bab2c4bed",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:7a294831bb8c00a8ae5e3ec91e175438942cb08c0375e417f6600a2704370a22",
              "sha256:aeae141def51b1391feca511d45ef921e567f531c785cec18ad40de6f4be337f",
              "sha256:befb63642d55d53014382a19ebdd263a618b107fc247ea9b831b01f1a5c4a891",
              "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-tokens"
            },
            "locators": [
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 20067,
                "end_byte": 20865,
                "value_digest": "sha256:4ecffc4238770a3554f78225294f8b662ce3cd181b98a7a4950626ad553faf2a"
              }
            ]
          }
        ],
        "note": "According to Cloudflare documentation, selecting Create Token generates the token's secret, which must be copied to a secure place by the user and is only shown once. Because access material delivery relies on manual human copying/transfer, it satisfies partial delivery."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_completion",
        "selector_group_id": "provisioning_completion-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:51:59.753Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "readiness-2f2f4cb1780d706856af032c028a37b818b8467ad9cdd5253c074a857263724b"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-bc8b49ed87d1f5f8ab2920f8fb566580b21dbc2818786704c4b560b7b364b342"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d0a854974e6f22dfa90a972c986d960f6f8d070d6557a03e7fb3031bbf205be3",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:3a7e49e8af48da3041e025921dfabc72f7b0610dbe8b50912b83f4659cdf88bd",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7f0fb3892a5008f5a53b237b1d9b5b352ba91da80043367919219bd6b3bab66a",
              "sha256:9c3fdb4de3fd5ad232ccf13b42b65f0c7dd22a2b3abc0ac3e4d49a8015a7d956"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "readiness-bc8b49ed87d1f5f8ab2920f8fb566580b21dbc2818786704c4b560b7b364b342"
            },
            "locators": [
              {
                "artifact_digest": "sha256:7f0fb3892a5008f5a53b237b1d9b5b352ba91da80043367919219bd6b3bab66a",
                "start_byte": 1966,
                "end_byte": 2051,
                "value_digest": "sha256:de74266250b6a30c03659a85bfffdb0b670b34992394eacb02449f5e966e6be3"
              },
              {
                "artifact_digest": "sha256:7f0fb3892a5008f5a53b237b1d9b5b352ba91da80043367919219bd6b3bab66a",
                "start_byte": 2288,
                "end_byte": 2366,
                "value_digest": "sha256:642eda7464bec41969a7a6c7746a5b16c0a5e534ae99b75f936e387b4f3bbc6f"
              }
            ]
          }
        ],
        "note": "A deployment records which version is actively serving traffic and who created it and when, so an agent can confirm a deployment completed; the tested pages do not document polling, terminal failure states or reconciliation of an asynchronous provisioning failure."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_operability",
        "selector_group_id": "provisioning_operability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:59.753Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          },
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-2f2f4cb1780d706856af032c028a37b818b8467ad9cdd5253c074a857263724b"
          },
          {
            "node_kind": "resource",
            "node_id": "readiness-bc8b49ed87d1f5f8ab2920f8fb566580b21dbc2818786704c4b560b7b364b342"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d0a854974e6f22dfa90a972c986d960f6f8d070d6557a03e7fb3031bbf205be3",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:3a7e49e8af48da3041e025921dfabc72f7b0610dbe8b50912b83f4659cdf88bd",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7f0fb3892a5008f5a53b237b1d9b5b352ba91da80043367919219bd6b3bab66a",
              "sha256:a5565709e76ecd6f6267be1a123190d09ce09a08f1fdc7bd5db9270047f1e9d0"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "readiness-bc8b49ed87d1f5f8ab2920f8fb566580b21dbc2818786704c4b560b7b364b342"
            },
            "locators": [
              {
                "artifact_digest": "sha256:7f0fb3892a5008f5a53b237b1d9b5b352ba91da80043367919219bd6b3bab66a",
                "start_byte": 2389,
                "end_byte": 2645,
                "value_digest": "sha256:ea7de6531b0b07062767ab7a1e99b64bae0343ce47c31d4fd928cca60ac38b36"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3e8c629230ca53ab759c7d49854f6a332dcbc0a5b5303d89192c044656fa1738",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ace6e34f5a5f4a5a9e1061e93bdec98ca2db902ba868a99a3279d539d8fcbf5",
              "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
              "sha256:59cd515fc6cee0b290bb6af9e94f28317676508313bfc538b7cb7e45c6c308dc",
              "sha256:6cd4c6f2f12e3de717516083d487af7da0436430b7d6bc3880bffcde14dbaa7f"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 487558,
                "end_byte": 488353,
                "value_digest": "sha256:46cf871c1713fde942ef0420bcf27674af36ace03e8f6234863328c35673031a"
              }
            ]
          }
        ],
        "note": "Provisioning and updates can be triggered directly by agents through Cloudflare's API endpoints (such as Workers scripts upload) or CLI tools like Wrangler via 'wrangler deploy'."
      },
      {
        "stage": "operate",
        "signal_code": "agent_protocol_interface",
        "selector_group_id": "agent_protocol_interface-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:13.318Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "resource-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The retained excerpts describe REST or RPC interfaces, SDKs and CLIs for Cloudflare Developer Platform; they contain no first-party statement that an agent-native protocol interface is absent, and several navigation excerpts mention MCP resources without establishing coverage of the assessed targets."
      },
      {
        "stage": "operate",
        "signal_code": "credential_lifecycle",
        "selector_group_id": "credential_lifecycle-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:00.607Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e3de0256106cc30f005dec03219e19ca941c86ac35eabc17c49e6f6bab2c4bed",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1cc078db0f4524a82321d407fb08511babdb3101645de9bd47e3726927ef644b",
              "sha256:7a294831bb8c00a8ae5e3ec91e175438942cb08c0375e417f6600a2704370a22",
              "sha256:befb63642d55d53014382a19ebdd263a618b107fc247ea9b831b01f1a5c4a891",
              "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-tokens"
            },
            "locators": [
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 19266,
                "end_byte": 20066,
                "value_digest": "sha256:b0287a5a5b57a48cd218e9bab79eb4ea4777500dc52496bcd4ced0a1c2eaf36a"
              },
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 20866,
                "end_byte": 21666,
                "value_digest": "sha256:926fcacd1b797b8f11bb49207ecb2733fb6d4676ac5415329b0df8b212e1657c"
              }
            ]
          }
        ],
        "note": "Cloudflare API documentation describes creating and verifying API tokens with specific permissions and TTLs, and using the /user/tokens/verify endpoint to check status. Complete agent management of rotation, revocation, compromise response, and recovery is not established."
      },
      {
        "stage": "operate",
        "signal_code": "failure_contract",
        "selector_group_id": "failure_contract-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:51:13.318Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-errors"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:921a7f8e7d53040d5dc6c9b6131f46f014a5cbd3cda93d6d21d0fd5ee1cfd489",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0f8558da4fe4895f938d06cb14796bd2c6404c9901196bef0f9fd3add2e278fb",
              "sha256:43ac27e871991e80559288a06dc28b0cdd6d6c52c1bc9bce67e083a191ef8bb6",
              "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474",
              "sha256:e43b844f04e11e3d435e40b9404c82a39cf2dbbd5b68f4a3285adbf9c238f93c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474",
                "start_byte": 18812,
                "end_byte": 19614,
                "value_digest": "sha256:79caa354cbaf9de20985abcb080461ac989af965c65e510cc188050ef2a29575"
              }
            ]
          }
        ],
        "note": "Cloudflare troubleshooting documentation states that verifying an API token via /user/tokens/verify returns success status and expiration metadata, but it does not establish full failure mode semantics such as retries, idempotency, or reconciliation."
      },
      {
        "stage": "operate",
        "signal_code": "operation_authentication",
        "selector_group_id": "operation_authentication-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:00.607Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-tokens"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:e3de0256106cc30f005dec03219e19ca941c86ac35eabc17c49e6f6bab2c4bed",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:7a294831bb8c00a8ae5e3ec91e175438942cb08c0375e417f6600a2704370a22",
              "sha256:befb63642d55d53014382a19ebdd263a618b107fc247ea9b831b01f1a5c4a891",
              "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
              "sha256:f2876493f7657eed3cc7bacca4a2ca7ac4d2b956f7ecd546650f7080d1876060"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-tokens"
            },
            "locators": [
              {
                "artifact_digest": "sha256:df5fc8193c44e29902f0b9fd7eed3bc1f8b6e9ea8d718c4783da849947873b95",
                "start_byte": 20866,
                "end_byte": 21666,
                "value_digest": "sha256:926fcacd1b797b8f11bb49207ecb2733fb6d4676ac5415329b0df8b212e1657c"
              }
            ]
          }
        ],
        "note": "Cloudflare API operations authenticate using HTTP Bearer tokens via the Authorization header, which can be verified at the /user/tokens/verify endpoint."
      },
      {
        "stage": "operate",
        "signal_code": "operation_contract",
        "selector_group_id": "operation_contract-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:13.318Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "resource-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:97988fc2b618f7916b49440523cabbdbc9b3a924e7e99f0cbecdac50ef70179b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0ade5248eae9f53c834f30d4ac0d770f06e359f7669dd05c2fc7cf3bbfc0dad6",
              "sha256:3d3780ef5303be41ff3e86bbaafa1fe25317702dd20a4279e9a200c5c3bc41b0",
              "sha256:78bb65519051e0a4c680ccc3b779ee4580c6d25341cf7bc2787eaaf261715ec7",
              "sha256:bc7379f22da3f16c96473e50f3f7ad4e24d6f59d7a1f45cde896c8d2c5d65b00"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-limits"
            },
            "locators": [
              {
                "artifact_digest": "sha256:78bb65519051e0a4c680ccc3b779ee4580c6d25341cf7bc2787eaaf261715ec7",
                "start_byte": 19174,
                "end_byte": 19970,
                "value_digest": "sha256:aad1d2dcde07f17e7550f24e82883e0acf99336d5c4f8046b36ff6f182d8a879"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3e8c629230ca53ab759c7d49854f6a332dcbc0a5b5303d89192c044656fa1738",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ace6e34f5a5f4a5a9e1061e93bdec98ca2db902ba868a99a3279d539d8fcbf5",
              "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
              "sha256:6cd4c6f2f12e3de717516083d487af7da0436430b7d6bc3880bffcde14dbaa7f",
              "sha256:a32788fb8c3cf1ab91893c22460e2c6a6b220a8972645f44abf7293586f9f24d"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 492855,
                "end_byte": 493639,
                "value_digest": "sha256:e13e7b2bbcf4f4926b6936f8451a838bcec868358c62c90c26898063eed01532"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:921a7f8e7d53040d5dc6c9b6131f46f014a5cbd3cda93d6d21d0fd5ee1cfd489",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0f8558da4fe4895f938d06cb14796bd2c6404c9901196bef0f9fd3add2e278fb",
              "sha256:35ee09465f980c2d7f187b6eb2c9921a7e82aa9e7d030e6b3e59cf9a4f44da04",
              "sha256:43ac27e871991e80559288a06dc28b0cdd6d6c52c1bc9bce67e083a191ef8bb6",
              "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474",
                "start_byte": 19615,
                "end_byte": 20405,
                "value_digest": "sha256:21f696168801b25141233f9c7d0ff4655177c955f5b29a4f2d5701be78bd69cc"
              }
            ]
          }
        ],
        "note": "Cloudflare API endpoints provide defined request parameters, response schemas, and rate-limiting headers across troubleshooting, rate limits, and Workers script update resources."
      },
      {
        "stage": "operate",
        "signal_code": "target_interface_access",
        "selector_group_id": "target_interface_access-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:13.318Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "resource-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:3e8c629230ca53ab759c7d49854f6a332dcbc0a5b5303d89192c044656fa1738",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1ace6e34f5a5f4a5a9e1061e93bdec98ca2db902ba868a99a3279d539d8fcbf5",
              "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
              "sha256:6cd4c6f2f12e3de717516083d487af7da0436430b7d6bc3880bffcde14dbaa7f",
              "sha256:db7fb79fbf286605c00051fe670900eaf762fa1b908c33d885180e8c7e4fff77"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3ebd86cec37d4af5d914945d8fefb0c861b0ac92f667e9bbac9bff343da3dec2",
                "start_byte": 485186,
                "end_byte": 485983,
                "value_digest": "sha256:9bb8ecb888511b78baf41183b3aa9defd9709276fb92f6df1e041b4b4840d1d4"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:97988fc2b618f7916b49440523cabbdbc9b3a924e7e99f0cbecdac50ef70179b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0ade5248eae9f53c834f30d4ac0d770f06e359f7669dd05c2fc7cf3bbfc0dad6",
              "sha256:3d3780ef5303be41ff3e86bbaafa1fe25317702dd20a4279e9a200c5c3bc41b0",
              "sha256:78bb65519051e0a4c680ccc3b779ee4580c6d25341cf7bc2787eaaf261715ec7",
              "sha256:b725f5c650acb73568cea910fffe4babdbe5054373529372b0992d86c31d9100"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-limits"
            },
            "locators": [
              {
                "artifact_digest": "sha256:78bb65519051e0a4c680ccc3b779ee4580c6d25341cf7bc2787eaaf261715ec7",
                "start_byte": 18358,
                "end_byte": 19173,
                "value_digest": "sha256:b88400baaa1058dd30f5226c7e5a1be81bceffaaf95c3c4d9296cdfa2d5e55dc"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:921a7f8e7d53040d5dc6c9b6131f46f014a5cbd3cda93d6d21d0fd5ee1cfd489",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0f8558da4fe4895f938d06cb14796bd2c6404c9901196bef0f9fd3add2e278fb",
              "sha256:43ac27e871991e80559288a06dc28b0cdd6d6c52c1bc9bce67e083a191ef8bb6",
              "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474",
              "sha256:e43b844f04e11e3d435e40b9404c82a39cf2dbbd5b68f4a3285adbf9c238f93c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:965b62af949f17bc70f9d733ab7a084aca7c66a1c9c07701165eae128c27c474",
                "start_byte": 18812,
                "end_byte": 19614,
                "value_digest": "sha256:79caa354cbaf9de20985abcb080461ac989af965c65e510cc188050ef2a29575"
              }
            ]
          }
        ],
        "note": "Cloudflare provides documented API HTTP interfaces across API troubleshooting, rate limit references, and Workers script update endpoints."
      }
    ],
    "revision_digest": "sha256:5885b19f6ac622ff37d20cb9834e9ca3501768e1cd1bbd439a0d86026ce7caaa"
  }
}
