{
  "api_contract": "sourcey.catalog-api/v1",
  "release_id": "sha256:5f55a0147eca9a82d821b7cfb73339dd8059c146b9acbb6ed66c9e3d40a8e1b0",
  "artifact_sha256": "sha256:ec393385ec4e7be15a393d925f0df78d54a12787f2995a84fad1b570583dac06",
  "data": {
    "revision_contract": "sourcey.agent-readiness-revision/v1alpha1",
    "agent_readiness_profile_id": "arp_01kzf0m4xk6m1tb8d5y3pr9wg2",
    "entity_id": "ent_01kyygma830fqh16kvj744sk1c",
    "scope": {
      "product": {
        "key": "stripe-payments-api",
        "name": "Stripe Payments API"
      },
      "funnel": {
        "key": "api-payment-lifecycle",
        "name": "API payment lifecycle"
      }
    },
    "catalog_binding": {
      "base_release_id": "sha256:8986cb1640fd748dd005e5c94c7b02d3f44a3d39ff6b72573091bd81af84c61e",
      "entity_revision_digest": "sha256:13a1e13a935baf054379e0920ee70976c984b5f482098bed447cd0a4554b7afe"
    },
    "declaration_revision_digest": "sha256:a81bdfbb491f2fe21afdd527f05027fbd7b85f25ea725043056eab981f9aff56",
    "declaration": {
      "declaration_id": "declaration_stripe_payments_api_lifecycle",
      "provenance": {
        "repository": "sourcey/agent-ready-services",
        "commit": "ca383f7867c18d91567fcb8326be55f7411d9554",
        "path": "entities/st/stripe.yaml",
        "git_blob_oid": "2541a4324bf3163306f1d84a27179ed55ce583ca",
        "blob_digest": "sha256:4071d4ed229dab1899832182b2f7fe5169e79aebb6930794c4c7853f89529a40"
      },
      "status": "community_declared"
    },
    "lifecycle": "active",
    "effective_from": "2026-09-06T08:47:58Z",
    "signals": [
      {
        "stage": "evaluate",
        "signal_code": "eligibility_decidability",
        "selector_group_id": "eligibility_decidability-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:08.723Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:b23ffddf46e4f4c5db234593dfee60d6c256d21eec10c86aaea2990d467ae27b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b59f5d0545e315ff17ce685f1acafb7d8b8540bacd4bb967c32f4e9e5624e46",
              "sha256:4f6dec17564079b9bf382a4b088ef5aea2c6cad1141b0c9e481d3cdcf92555eb",
              "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
              "sha256:ab6a6d00aaf10dc9a120480317dcb84200b40a656b736f02d738646e87494dcb"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
                "start_byte": 11085,
                "end_byte": 11894,
                "value_digest": "sha256:bb2e01515c02b348eb318416e38241425c5dd3ea437e9dd9b703ff289f1216e3"
              },
              {
                "artifact_digest": "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
                "start_byte": 70578,
                "end_byte": 71400,
                "value_digest": "sha256:7054ca5d3ccd33127cab701eb3dc6e660a6e090b5d301da518fe77087864921d"
              }
            ]
          }
        ],
        "note": "Stripe Services Agreement General Terms state that the agreement applies based on the User's Stripe Account Country, and that a Representative submitting an application represents they have full authority to legally bind the User. Complete eligibility conditions depend on specific Service Terms and the Prohibited and Restricted Businesses List."
      },
      {
        "stage": "evaluate",
        "signal_code": "pricing_decidability",
        "selector_group_id": "pricing_decidability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:40.030Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:7fb10460408ae30009fc9a24380859c0253bbfd57cd7a6d32a8ff0435e66fc57",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1c7cdccf6789cdb3fab1cf56146979c6c847b2e09ea2ecf4a0f6578713f439d7",
              "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
              "sha256:a820932c6b5d4941206d306d59fdef2259a89774cf64470f60fc4028667d757e",
              "sha256:ede4c5bd09a49c2f094e4842f49a3fe97cd8ecf93160cf859873c1c8ba5402d3"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
                "start_byte": 27557,
                "end_byte": 28346,
                "value_digest": "sha256:2162297ff8351b439e7a9686334c25a8f19c23e271a0193208344b4d2a0a82ec"
              },
              {
                "artifact_digest": "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
                "start_byte": 44300,
                "end_byte": 45097,
                "value_digest": "sha256:eb2b39bf1bcb82d809819f5035a52e6c410fd5b57a6d63140918da5e00b78ed5"
              }
            ]
          }
        ],
        "note": "Stripe's pricing page explicitly states rates and variables for payment optimisations (e.g., A$0.04 per 3D Secure attempt for custom pricing, A$0.15 for standalone 3DS) and confirms that Stripe does not charge setup fees or monthly fees for standard pricing."
      },
      {
        "stage": "evaluate",
        "signal_code": "service_discovery",
        "selector_group_id": "service_discovery-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:52.306Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb5bcbc66bceed1cf9e9af9139d1e33b69b13a7510eb8fe7d738e80a5bb3ae4e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0919a14604b09c2e192ab2b00e28e4f821326b9af0acd56b3113c5eb04616bd3",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:57ce156c02dd322b6cd11391a305922a7c52310f1d9cfa7c8a126273980d1bd5",
              "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375",
                "start_byte": 10266,
                "end_byte": 11026,
                "value_digest": "sha256:c98946e685c7a4c5c2e237256e5c90bfeaf78b6fdfa9fa91fad2aa2a4c4a18f9"
              }
            ]
          }
        ],
        "note": "The Stripe API Reference provides the exact service entrypoints, including the Base URL (https://api.stripe.com) and link to the development quickstart guide."
      },
      {
        "stage": "evaluate",
        "signal_code": "structured_evaluation_discovery",
        "selector_group_id": "structured_evaluation_discovery-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:52.306Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          },
          {
            "node_kind": "resource",
            "node_id": "authentication"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb5bcbc66bceed1cf9e9af9139d1e33b69b13a7510eb8fe7d738e80a5bb3ae4e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:57ce156c02dd322b6cd11391a305922a7c52310f1d9cfa7c8a126273980d1bd5",
              "sha256:c02410ffde45df8ca64991e2cdb34d8ffc06ea0d1223e617f09fb931a4e1ef83",
              "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375",
                "start_byte": 16276,
                "end_byte": 16560,
                "value_digest": "sha256:b2177832d5145af214dd6f99f48951c782240dd547d5cd234707649fec485ea8"
              }
            ]
          }
        ],
        "note": "The Stripe API Reference explicitly links to structured discovery artifacts, including 'llms.txt' ('LLM? Read llms.txt.')."
      },
      {
        "stage": "evaluate",
        "signal_code": "terms_access",
        "selector_group_id": "terms_access-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:08.723Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "service-terms"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:b23ffddf46e4f4c5db234593dfee60d6c256d21eec10c86aaea2990d467ae27b",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:2b59f5d0545e315ff17ce685f1acafb7d8b8540bacd4bb967c32f4e9e5624e46",
              "sha256:4f6dec17564079b9bf382a4b088ef5aea2c6cad1141b0c9e481d3cdcf92555eb",
              "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
              "sha256:fd4a15a8f2b58f0c1652413f16ad67644dd1ceb20c301085501c8aa44355f206"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "service-terms"
            },
            "locators": [
              {
                "artifact_digest": "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
                "start_byte": 10273,
                "end_byte": 11084,
                "value_digest": "sha256:bd8d6d8433c9e06ea57bbf594c4c915d8cfde69e2dc7ffe2f7a709adf263e86b"
              },
              {
                "artifact_digest": "sha256:7dff87c33cb5a4b8a59bacdc71ddf210121c96d6d5393c2585d670d6b6bba5b6",
                "start_byte": 97121,
                "end_byte": 97920,
                "value_digest": "sha256:91ef2c0a03b29b7c9b9e78858eeff147947d0e6f1ba84772c030979be2d5238d"
              }
            ]
          }
        ],
        "note": "The Stripe Services Agreement General Terms are publicly accessible and readable, explicitly governing access to and use of the Services and Stripe Technology."
      },
      {
        "stage": "evaluate",
        "signal_code": "verified_web_agent_access",
        "selector_group_id": "verified_web_agent_access-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:50:52.306Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-reference"
          },
          {
            "node_kind": "resource",
            "node_id": "authentication"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The provided documentation captures do not contain verified web-agent access rules or robots.txt directives for the assessed resources."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_control_operability",
        "selector_group_id": "access_control_operability-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:09.253Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The captured registration endpoint returned an incompatible browser notice, leaving access control operability unresolved in the current evidence."
      },
      {
        "stage": "sign_up",
        "signal_code": "access_entrypoint_stability",
        "selector_group_id": "access_entrypoint_stability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:09.253Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "direct_observation",
            "captures": [
              {
                "retained_capture_digest": "sha256:9110672fd4d6341b1ded42403eb0d71bc5cd7ac291db7458cf004ab9e9e1cd07",
                "capture_rung": "headless"
              }
            ],
            "artifact_digests": [
              "sha256:2c97cdd0d2866e28d7501d57869b1c6a0ac8614279ea489cef01dddcd39b7d71",
              "sha256:3878570f4a62a0d65f57cf1754e0269e56ec797f4e36e26b44c172eb6e800401",
              "sha256:4afc7fd88d474f640b7f7b4a3ab15ad645409964125d3a49ba9e96e993ab4c19",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:844e403ebdceb526816f4f356c0656663b1bf848ef232c192362ea9549eea265",
              "sha256:cd02f5a91146e001e07e0096a897b53f49bdfba025c49ed503c0ccc03de4188c"
            ],
            "locators": [
              {
                "artifact_digest": "sha256:cd02f5a91146e001e07e0096a897b53f49bdfba025c49ed503c0ccc03de4188c",
                "start_byte": 0,
                "end_byte": 264,
                "value_digest": "sha256:6ae77c2872ac63a3733bb94ed92ef39aedaea3153fb974bc7d969167abe91785"
              }
            ]
          }
        ],
        "note": "A stable registration metadata description establishes a sign-up route to create a Stripe account and start accepting payments at https://dashboard.stripe.com/register."
      },
      {
        "stage": "sign_up",
        "signal_code": "captcha_compatible_access",
        "selector_group_id": "captcha_compatible_access-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:09.253Z",
        "tested_surfaces": [
          {
            "node_kind": "endpoint",
            "node_id": "registration"
          },
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The captured registration targets returned browser compatibility notices without demonstrating the presence or absence of a CAPTCHA challenge."
      },
      {
        "stage": "sign_up",
        "signal_code": "delegated_identity_access",
        "selector_group_id": "delegated_identity_access-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:39.417Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "authentication"
          },
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d3d98efa30db55985c6e4a535a6d6c20c333c9494cb84349cd41b3def0d6eb68",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5c62c4e9c94441b858d0fa7e7c9b0e40f824625a24d3bdc87cba77cfbb9e71da",
              "sha256:ac6546ef5aaa320b4193300462306c0f7b4ba9decc413b30b8f109e80ef07901",
              "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "authentication"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
                "start_byte": 9731,
                "end_byte": 10528,
                "value_digest": "sha256:b595de453e38bcea7af8ae3c7e460fbaa3e457931182360d629180b48d97487f"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:09abfc629296b7dc0ec2cf91bc86cbab2a555e8d459afeef8f00f52229dfbedb",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:3b21b8663134d9b27f92e5292065e838d4d92f3118e605212f00d0ae0932fbe5",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
              "sha256:d7240f38b0ef68abe2fd07864fc36a3e840ab7447a61908940c26d3bbd0af6cc"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "credential-lifecycle"
            },
            "locators": [
              {
                "artifact_digest": "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
                "start_byte": 13585,
                "end_byte": 13985,
                "value_digest": "sha256:6f7548cba582eb985ffce79c958a69dcaf4296cc2bc50f15d6775a200f88a810"
              }
            ]
          }
        ],
        "note": "Stripe documentation establishes restricted API keys with specific permissions and documents manual revocation/rotation rules when keys are lost, compromised, or team members leave, but leaves creation/issuance manual."
      },
      {
        "stage": "sign_up",
        "signal_code": "phone_verification_compatible",
        "selector_group_id": "phone_verification_compatible-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:09.253Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "dashboard-signup"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The registration page capture returned an incompatible browser notice, providing no explicit evidence regarding phone verification requirements or safe handoffs."
      },
      {
        "stage": "pay",
        "signal_code": "checkout_operability",
        "selector_group_id": "checkout_operability-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:40.030Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The retained evidence lists Checkout and Payment Links as products, but it does not contain details establishing deterministic checkout construction, approval handoff, and resumption for agents."
      },
      {
        "stage": "pay",
        "signal_code": "commitment_disclosure",
        "selector_group_id": "commitment_disclosure-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:40.030Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:7fb10460408ae30009fc9a24380859c0253bbfd57cd7a6d32a8ff0435e66fc57",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1c7cdccf6789cdb3fab1cf56146979c6c847b2e09ea2ecf4a0f6578713f439d7",
              "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
              "sha256:a820932c6b5d4941206d306d59fdef2259a89774cf64470f60fc4028667d757e",
              "sha256:d6671c84868d6e7d051253e76c2b2b9bd72645bd853dbc8c55f71c7c3e82afd5"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
                "start_byte": 21996,
                "end_byte": 22798,
                "value_digest": "sha256:9428668473f64c0bc7310eaef4c899c0f813227690eb3ade732e7d7adb2b85c6"
              },
              {
                "artifact_digest": "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
                "start_byte": 33930,
                "end_byte": 34728,
                "value_digest": "sha256:c8e33c4beeda3e0129bcd2872903729b354122d7fccf795126d0f15f5fdcc6a6"
              }
            ]
          }
        ],
        "note": "Stripe discloses pricing for card payments at 1.7% + A$0.30 for domestic cards and 3.5% + A$0.30 for international cards (plus 2% if currency conversion is required), and billing options such as Pay as you go at 0.7% of Billing volume."
      },
      {
        "stage": "pay",
        "signal_code": "payment_authorization",
        "selector_group_id": "payment_authorization-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:40.030Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The evidence mentions 3D Secure authentication and payment authorization, but does not state a documented rail supporting scoped delegation or human-confirmed authorization with receipts."
      },
      {
        "stage": "pay",
        "signal_code": "self_service_purchase",
        "selector_group_id": "self_service_purchase-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:51:40.030Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "pricing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:7fb10460408ae30009fc9a24380859c0253bbfd57cd7a6d32a8ff0435e66fc57",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1c7cdccf6789cdb3fab1cf56146979c6c847b2e09ea2ecf4a0f6578713f439d7",
              "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
              "sha256:7096bee9cf2df339506a2091cc18ec2102f1f083d9677208e9804a92fec88643",
              "sha256:a820932c6b5d4941206d306d59fdef2259a89774cf64470f60fc4028667d757e"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "pricing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:3202ee9afd3c769b0fd94c59ccc537759b8b29b8d5c604a57c77c2e338b63d11",
                "start_byte": 21197,
                "end_byte": 21995,
                "value_digest": "sha256:abdf90018a9b803fe1c564c903dcdbc94bf831694bb3878501f2797a998e0c92"
              }
            ]
          }
        ],
        "note": "Stripe provides self-service standard pay-as-you-go card processing pricing starting with zero setup or monthly fees, but notes that large volume or unique business models require contacting sales for a custom package."
      },
      {
        "stage": "provision",
        "signal_code": "access_material_delivery",
        "selector_group_id": "access_material_delivery-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:39.417Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "authentication"
          },
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:09abfc629296b7dc0ec2cf91bc86cbab2a555e8d459afeef8f00f52229dfbedb",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:3b21b8663134d9b27f92e5292065e838d4d92f3118e605212f00d0ae0932fbe5",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
              "sha256:d97b57030d4c81cfadc722405922a08b6aedc38bd9c14c98666c17f66e5076f8"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "credential-lifecycle"
            },
            "locators": [
              {
                "artifact_digest": "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
                "start_byte": 9689,
                "end_byte": 10335,
                "value_digest": "sha256:78b13e60c10859b367d8f291dc34381e603e25fea4fb3847a6acb8d325585f93"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d3d98efa30db55985c6e4a535a6d6c20c333c9494cb84349cd41b3def0d6eb68",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5c62c4e9c94441b858d0fa7e7c9b0e40f824625a24d3bdc87cba77cfbb9e71da",
              "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
              "sha256:fd96c5a42b96ec706c706445566fcb502deabd9a13eeb4474219febb52262f9c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "authentication"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
                "start_byte": 8932,
                "end_byte": 9730,
                "value_digest": "sha256:fddb86e547ed43ed8faf83ce237c33880621f5ebfbaece6f235beec745c9fa48"
              }
            ]
          }
        ],
        "note": "Stripe API keys are managed in the Dashboard. In live mode, secret keys are displayed only once upon creation for copying, establishing a manual dashboard display path rather than a fully automated agent credential exchange flow."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_completion",
        "selector_group_id": "provisioning_completion-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:08.915Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "payment-intents-create"
          },
          {
            "node_kind": "resource",
            "node_id": "testing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb40c833e8fd013c2d769287cb633ca4d28722786d45500fd0ddd5d480f2f188",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1e3564623f84e1c0b87f3946a428e0b09ddae46e17e448020ad598d8cc5ce27f",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:828110c8e2bb4488c0ca87994808b35f431b8a7e76fed639a6229435eb09add8",
              "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "testing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399",
                "start_byte": 40499,
                "end_byte": 41299,
                "value_digest": "sha256:38f85b341564e8a8d31fb255d75c45e07065f279fb0bcd534dcb0a841ffbfc56"
              },
              {
                "artifact_digest": "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399",
                "start_byte": 47619,
                "end_byte": 48413,
                "value_digest": "sha256:005cc33e21461bec46ce57ed6b7056e7d13adb26aba9ffecaa24bdc9ff8a311e"
              }
            ]
          }
        ],
        "note": "For asynchronous payment methods, PaymentIntents move to a processing state upon confirmation. Terminal outcomes are communicated via webhooks, with payment_intent.succeeded indicating success and payment_intent.payment_failed indicating failure, allowing agents to observe completion and reconcile failure."
      },
      {
        "stage": "provision",
        "signal_code": "provisioning_operability",
        "selector_group_id": "provisioning_operability-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:16.056Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          },
          {
            "node_kind": "resource",
            "node_id": "payment-intents-create"
          },
          {
            "node_kind": "resource",
            "node_id": "testing"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bcd3ba027469916fe2909fc37a7afa068ba8acba545f12bdacfa5ca717dc40e1",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:7f253ded6b16143d59c27b9a97fe1f8278e33ec2ecb5e4d5f6a5160f2d55c9f1",
              "sha256:acd387d930f14a6efc5e56315372160d59e61d35836528e30e2261866d0de809",
              "sha256:c4ce10baa19df23b86504289ef6e02e8fd49fa9b4d7b1fcc582b43b495741b6e"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "payment-intents-create"
            },
            "locators": [
              {
                "artifact_digest": "sha256:acd387d930f14a6efc5e56315372160d59e61d35836528e30e2261866d0de809",
                "start_byte": 11671,
                "end_byte": 12468,
                "value_digest": "sha256:24633918a8b9a10636b71063c2ab1e58a1e8b8e8d42dfa182ca6f7a7a0747394"
              }
            ]
          }
        ],
        "note": "Provisioning of PaymentIntent resources is machine-triggerable via an HTTP POST request to /v1/payment_intents using API authentication."
      },
      {
        "stage": "operate",
        "signal_code": "agent_protocol_interface",
        "selector_group_id": "agent_protocol_interface-primary",
        "value": "unknown",
        "observed_at": "2026-09-06T08:51:31.571Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "payments-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [],
        "note": "The retained excerpts describe REST or RPC interfaces, SDKs and CLIs for Stripe Payments API; they contain no first-party statement that an agent-native protocol interface is absent, and several navigation excerpts mention MCP resources without establishing coverage of the assessed targets."
      },
      {
        "stage": "operate",
        "signal_code": "credential_lifecycle",
        "selector_group_id": "credential_lifecycle-primary",
        "value": "partial",
        "observed_at": "2026-09-06T08:50:39.417Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "authentication"
          },
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:09abfc629296b7dc0ec2cf91bc86cbab2a555e8d459afeef8f00f52229dfbedb",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0247faa62aa6bdc813a604470593d94d805abd1f05370bedc0f98ec74aed3f65",
              "sha256:3b21b8663134d9b27f92e5292065e838d4d92f3118e605212f00d0ae0932fbe5",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "credential-lifecycle"
            },
            "locators": [
              {
                "artifact_digest": "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
                "start_byte": 13585,
                "end_byte": 13985,
                "value_digest": "sha256:6f7548cba582eb985ffce79c958a69dcaf4296cc2bc50f15d6775a200f88a810"
              },
              {
                "artifact_digest": "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
                "start_byte": 14789,
                "end_byte": 15368,
                "value_digest": "sha256:53b81819d26425eb738e1364221753116bbb59ea9d2754be485b780b6f0a6195"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d3d98efa30db55985c6e4a535a6d6c20c333c9494cb84349cd41b3def0d6eb68",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5c62c4e9c94441b858d0fa7e7c9b0e40f824625a24d3bdc87cba77cfbb9e71da",
              "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
              "sha256:fd96c5a42b96ec706c706445566fcb502deabd9a13eeb4474219febb52262f9c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "authentication"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
                "start_byte": 8932,
                "end_byte": 9730,
                "value_digest": "sha256:fddb86e547ed43ed8faf83ce237c33880621f5ebfbaece6f235beec745c9fa48"
              }
            ]
          }
        ],
        "note": "Stripe API keys can be managed, configured as restricted API keys, and rotated via the Dashboard or managed by hosting platforms. However, credential rotation and revocation depend on manual Dashboard steps or hosting platform automation rather than a direct programmatic agent API."
      },
      {
        "stage": "operate",
        "signal_code": "failure_contract",
        "selector_group_id": "failure_contract-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:31.571Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "api-errors"
          },
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          },
          {
            "node_kind": "resource",
            "node_id": "idempotency"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:60b8d5c09e647805aaacdf0a3913264bc22e17d02c74ef5a7968c1cbfcf796ec",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
              "sha256:c04ce39bbf821cda1238f69c39c45981b87834c0e708570d2097104b00a7f5f2",
              "sha256:eb197066336bcfad4e69a56f76538bcf5735827297ea2456a167f38c3b7bc038"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
                "start_byte": 11652,
                "end_byte": 12459,
                "value_digest": "sha256:62c0f229ad2749daed334e843e8ecf3caa0c1e7c3c0b0cd47afdacecda78a31c"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d0b9e29f56b0f080e9ca510f8db66f77eb7fd9d10e650188b9bb0235b6a652f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:77646ed8fd8951854d0c75e9b477f6de97afbd9c9106b75b9af17089382c0002",
              "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
              "sha256:e8b1b05fe3740b838ae1ce275a12b6a00d4bcf9fadd13d7464d4414f9f1a439c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "idempotency"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
                "start_byte": 10422,
                "end_byte": 11228,
                "value_digest": "sha256:af2e649aa221e998bdaec38b5dc0622194a4ab0a55b7ddd8d1e51c7a651a163f"
              },
              {
                "artifact_digest": "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
                "start_byte": 8824,
                "end_byte": 9623,
                "value_digest": "sha256:cf5e7967956faa0a178f30da5971b51dfb3f4b7a188afcbad107fa82cb601ec1"
              }
            ]
          }
        ],
        "note": "Failure modes, HTTP status codes (such as 400, 401, 402, 403, 404, 409, 424, 429, 500), error types, retry guidance with exponential backoff, and idempotency semantics using the Idempotency-Key header on POST requests are documented."
      },
      {
        "stage": "operate",
        "signal_code": "operation_authentication",
        "selector_group_id": "operation_authentication-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:50:39.417Z",
        "tested_surfaces": [
          {
            "node_kind": "resource",
            "node_id": "authentication"
          },
          {
            "node_kind": "resource",
            "node_id": "credential-lifecycle"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:09abfc629296b7dc0ec2cf91bc86cbab2a555e8d459afeef8f00f52229dfbedb",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:3b21b8663134d9b27f92e5292065e838d4d92f3118e605212f00d0ae0932fbe5",
              "sha256:3b96914e673a7d4dc95940c48e5c46ffb30e4437eaaa37714be3fc5faf909efb",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "credential-lifecycle"
            },
            "locators": [
              {
                "artifact_digest": "sha256:ad03e6e375856bf2dc9cefbdc7ee199d567c8db672a2e7e5df2dd752c36c8e78",
                "start_byte": 1910,
                "end_byte": 2711,
                "value_digest": "sha256:6480ffd20833595ab09138a328a2e13c11d75101a07cf9ebc65a9b673c130b28"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:d3d98efa30db55985c6e4a535a6d6c20c333c9494cb84349cd41b3def0d6eb68",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0c1ad9e94dc76a258f72d9151176d7d392900adb6f7f9c50c1b489d1d9a22288",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:5c62c4e9c94441b858d0fa7e7c9b0e40f824625a24d3bdc87cba77cfbb9e71da",
              "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "authentication"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
                "start_byte": 9731,
                "end_byte": 10528,
                "value_digest": "sha256:b595de453e38bcea7af8ae3c7e460fbaa3e457931182360d629180b48d97487f"
              },
              {
                "artifact_digest": "sha256:b96d506ebce1e956f1645a16a3e7e715ebcceac78dccfc3b0a05d8aa37585435",
                "start_byte": 8932,
                "end_byte": 9730,
                "value_digest": "sha256:fddb86e547ed43ed8faf83ce237c33880621f5ebfbaece6f235beec745c9fa48"
              }
            ]
          }
        ],
        "note": "API requests are authenticated over HTTPS using API keys (such as secret keys or restricted API keys with specific permissions) provided via HTTP basic auth or headers under scoped authority."
      },
      {
        "stage": "operate",
        "signal_code": "operation_contract",
        "selector_group_id": "operation_contract-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:31.571Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "payments-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:60b8d5c09e647805aaacdf0a3913264bc22e17d02c74ef5a7968c1cbfcf796ec",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
              "sha256:c04ce39bbf821cda1238f69c39c45981b87834c0e708570d2097104b00a7f5f2",
              "sha256:f65c2bb1f87b2d1d33e7ca3294442e45ea6f0faa81648150d8f68c4bd80d1df9"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
                "start_byte": 13257,
                "end_byte": 14055,
                "value_digest": "sha256:7bbbd512849bc54e66086a9937bfd40d7338d93083e1c2e56b0915cfc98d5514"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb5bcbc66bceed1cf9e9af9139d1e33b69b13a7510eb8fe7d738e80a5bb3ae4e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:0d2fd757334677cd1406bd8501c8e3a942f4c60ace902235c6eb0ada3dc60b3b",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:57ce156c02dd322b6cd11391a305922a7c52310f1d9cfa7c8a126273980d1bd5",
              "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375",
                "start_byte": 12599,
                "end_byte": 13394,
                "value_digest": "sha256:cf789692113bc1536adf6854ab4abc48bb46f6411b242328652a6aadb9502b6b"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb40c833e8fd013c2d769287cb633ca4d28722786d45500fd0ddd5d480f2f188",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:6a8c1ab633d2b78993efed5e3ae8d176ec071f7c6d40e8cdcee9c91d1e7fdac1",
              "sha256:828110c8e2bb4488c0ca87994808b35f431b8a7e76fed639a6229435eb09add8",
              "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "testing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399",
                "start_byte": 35795,
                "end_byte": 36593,
                "value_digest": "sha256:cc9946ceca56884a2e82bee98797e365feab671117ce54ada81e50b62e2cdd22"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d0b9e29f56b0f080e9ca510f8db66f77eb7fd9d10e650188b9bb0235b6a652f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:40585103ef4a825e341051fb42df8cc42c97182c6d625039809e2b21bd0a19e0",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
              "sha256:e8b1b05fe3740b838ae1ce275a12b6a00d4bcf9fadd13d7464d4414f9f1a439c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "idempotency"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
                "start_byte": 11229,
                "end_byte": 12030,
                "value_digest": "sha256:4a0c06054a51513b392ec42b37d3c028c88bbc0b90b822700bc37b8bfe7d73c1"
              }
            ]
          }
        ],
        "note": "Essential API operation contracts across targets are stable and decidable, defining REST endpoints, HTTP verbs, JSON/form parameters, error responses, idempotency headers, and test card/event behaviors."
      },
      {
        "stage": "operate",
        "signal_code": "target_interface_access",
        "selector_group_id": "target_interface_access-primary",
        "value": "yes",
        "observed_at": "2026-09-06T08:51:31.571Z",
        "tested_surfaces": [
          {
            "node_kind": "interface",
            "node_id": "payments-api"
          }
        ],
        "assessment_method": {
          "name": "public-semantic-assessment",
          "version": "2026-09-06",
          "method_digest": "sha256:02ec902925d3816c86a32a3d15dc2e7af6ce9931c24b9cf264063e596952d1c4"
        },
        "determination_bases": [
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:60b8d5c09e647805aaacdf0a3913264bc22e17d02c74ef5a7968c1cbfcf796ec",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
              "sha256:c04ce39bbf821cda1238f69c39c45981b87834c0e708570d2097104b00a7f5f2",
              "sha256:ea0c122812d69c9028f18e35dd20a7d2d0787fae7ec36d319d20c0167181b8f7"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-errors"
            },
            "locators": [
              {
                "artifact_digest": "sha256:8e86535a9b9fee763e5eeb980561784a473afa5e36717b0d69411a094890f981",
                "start_byte": 7210,
                "end_byte": 7965,
                "value_digest": "sha256:572428a69eeb669ebf0c787ca32453291da54e6c7849113bdf96f8cd647f4992"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb40c833e8fd013c2d769287cb633ca4d28722786d45500fd0ddd5d480f2f188",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:828110c8e2bb4488c0ca87994808b35f431b8a7e76fed639a6229435eb09add8",
              "sha256:85e02fc0e3966c2e818fd0b27a3203f87a3f445960c19cc297e0315a67e6736d",
              "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "testing"
            },
            "locators": [
              {
                "artifact_digest": "sha256:b9a4cf6b468db6a70041c82fde3b40d4857e5dda985079588d7b8153bbe97399",
                "start_byte": 31798,
                "end_byte": 32577,
                "value_digest": "sha256:ceff869d4a65f44c5ef149039fb7f484a1f52a4c586339b62deb780546391675"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:9d0b9e29f56b0f080e9ca510f8db66f77eb7fd9d10e650188b9bb0235b6a652f",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:1f6f1ba8893242daf0eba244669b4698f31070c02ff1fc54a7299961539c3e14",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
              "sha256:e8b1b05fe3740b838ae1ce275a12b6a00d4bcf9fadd13d7464d4414f9f1a439c"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "idempotency"
            },
            "locators": [
              {
                "artifact_digest": "sha256:c4afc3002da689a464606f2238b2bf7feeb550755dc350a1e67105b5535031fb",
                "start_byte": 9624,
                "end_byte": 10421,
                "value_digest": "sha256:7c40cb431818d8f760b504330e2b0d781232bdd588829f41c28d6b7c5ec11fd5"
              }
            ]
          },
          {
            "kind": "explicit_first_party_declaration",
            "captures": [
              {
                "retained_capture_digest": "sha256:bb5bcbc66bceed1cf9e9af9139d1e33b69b13a7510eb8fe7d738e80a5bb3ae4e",
                "capture_rung": "http"
              }
            ],
            "artifact_digests": [
              "sha256:091a48faa108aa2c03ecfed69da20e07e269fe0c809321a03bb2602044ab2ba1",
              "sha256:4f53cda18c2baa0c0354bb5f9a3ecbe5ed12ab4d8e11ba873c2f11161202b945",
              "sha256:57ce156c02dd322b6cd11391a305922a7c52310f1d9cfa7c8a126273980d1bd5",
              "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375"
            ],
            "source_surface": {
              "node_kind": "resource",
              "node_id": "api-reference"
            },
            "locators": [
              {
                "artifact_digest": "sha256:e716624ebcc5a3c8ce6af1607981edbc69aee0f1a855aad9b83f37385d69e375",
                "start_byte": 11027,
                "end_byte": 11825,
                "value_digest": "sha256:d75dead307d7487ea4a779836ddfbcaf633924af22de19e62a1ba3bcc01caa9e"
              }
            ]
          }
        ],
        "note": "Every essential target resource is operable through standard REST API endpoints, supported official client libraries, and the Stripe CLI."
      }
    ],
    "revision_digest": "sha256:59a44f16c7584a7acf0ca10b15651c79b9bd0f89bd37a472187ae17b4798c6d9"
  }
}
