{"name":"WebAZ Protocol","schema_version":46,"software_version":"0.1.37","remote_mcp":{"transport":"streamable_http","endpoint":"https://webaz.xyz/mcp","shopping_endpoint":"https://webaz.xyz/mcp/shopping-v1","grok_public_endpoint":"https://webaz.xyz/mcp/grok-search-v1","grok_account_endpoint":"https://webaz.xyz/mcp/grok-v1","grok_endpoint":"https://webaz.xyz/mcp/grok-v1","grok_connector_strategy":{"primary":{"name":"WebAZ Shopping","endpoint":"https://webaz.xyz/mcp/grok-search-v1","authentication":"none","tools":["webaz_search"],"purpose":"Stable Grok-native public reviewed-product search for unregistered users; one user request produces one complete native result."},"account_preview":{"name":"WebAZ Shopping Account","endpoint":"https://webaz.xyz/mcp/grok-v1","status":"not_recommended_for_default_setup","authentication":"OAuth 2.1 at connector setup","oauth_scopes":["read","order:draft"],"tools":["webaz_info","webaz_search","webaz_price_history","webaz_buyer_orders","webaz_quote_order","webaz_order_draft","webaz_submit_order_request","webaz_approval_requests"],"purpose":"Compatibility preview only; do not expose by default until live Grok quote/draft flows pass the same reliability gate as search."},"host_constraint":"Live Grok may repeat or rewrite a single tool request and does not document the ChatGPT widget bridge; the primary surface therefore has one compact native search tool and no openai/* UI metadata.","acceptance_flow":["webaz tissue","first one"],"additional_tools_policy":"Expose no additional Grok tools until each proposed user flow passes repeated live-web tests without duplicate output cards, hidden retries, or account/auth dead ends."},"grok_surface":{"tools":["webaz_info","webaz_search","webaz_price_history","webaz_buyer_orders","webaz_quote_order","webaz_order_draft","webaz_submit_order_request","webaz_approval_requests"],"oauth_scopes":["read","order:draft"],"hard_call_boundary":true,"final_execution":"Human opens the WebAZ approval URL and confirms the exact order with a Passkey; MCP draft/submit tools do not execute it."},"methods":"POST (JSON-RPC 2.0); GET/DELETE → 405 (stateless, no session)","protocol_version":"2025-11-25","protocol_versions_supported":["2025-11-25","2025-06-18","2025-03-26","2024-11-05","2024-10-07"],"protocol_negotiation":"per-connection via the MCP initialize handshake (SDK-managed capability negotiation)","mcp_apps_extension":{"spec_version":"2026-01-26","sep":"SEP-1865","note":"interactive UI cards (ui:// resources) — versioned independently of the core MCP protocol above"},"status":"live","authentication":{"anonymous":"default buyer surface public reads include webaz_info / webaz_search / webaz_price_history; tools/list is authoritative for the selected surface","bearer":"Authorization: Bearer <api_key> → authenticated write tools; RISK actions return approve_url (Passkey in browser)","oauth":{"flow":"OAuth 2.1 authorization_code + PKCE(S256) — Connect without pasting an api_key: log in with Passkey, approve SAFE scopes, get a short-lived audience-bound token. RISK actions still return approve_url (human gate unchanged).","protected_resource_metadata":"https://webaz.xyz/.well-known/oauth-protected-resource/mcp","authorization_server_metadata":"https://webaz.xyz/.well-known/oauth-authorization-server"}},"stdio_alternative":"npx -y @seasonkoh/webaz  (local STDIO transport — full local surface includes stdio-only webaz_pair; Remote full omits that local pairing tool)","sdks":{"python":"pip install webaz  →  async with WebAZ() as wz: await wz.browse()  (thin wrapper over this endpoint; anonymous by default, api_key for writes)","typescript_stdio":"npx -y @seasonkoh/webaz  (STDIO MCP server)"},"connect_page":"https://webaz.xyz/#connect","anonymous_quickstart":"ChatGPT reviewed app: use shopping_endpoint. Grok custom connector: use grok_public_endpoint. Both are fixed anonymous one-tool surfaces; the Grok endpoint uses one compact query-first call and no ChatGPT widget metadata. Machine catalog: https://webaz.xyz/.well-known/webaz-acp-feed.json","docs":"https://webaz.xyz/docs/REMOTE-MCP.md"},"for_end_user":{"one_liner":"WebAZ is live for commerce on two real rails with different custody models: Direct Pay moves payment straight from buyer to seller off-platform; eligible USDC orders lock funds in an immutable Base-mainnet escrow contract whose exits are limited to the buyer, seller, or configured platform-fee destination. The USDC rail is runtime-gated and the contract has not been third-party audited. / WebAZ 已发布,提供两条托管模式不同的真实支付轨:直付由买家向卖家场外付款;符合条件的 USDC 订单把资金锁入 Base 主网不可升级担保合约,合约只能向买家、卖家或配置的平台费地址出款。USDC 渠道受运行时开关控制,合约未经第三方安全审计。","why_use":["Direct Pay rail (live, conditions-gated) — pay the seller directly off-platform; non-custodial: WebAZ never holds the principal, does not guarantee and cannot refund, but records risk confirmation + Passkey, payment-info snapshot, order states and evidence for auditability.","USDC on-chain escrow rail (live, conditions-gated) — your USDC is locked in an immutable contract on Base mainnet. WebAZ cannot move it to any address of its choosing: funds can only ever go to the original buyer (refund), the voucher-bound seller, or the platform fee sink. Per-order amount is capped on-chain. The contract has NOT had a third-party security audit; the compensating controls are a deliberately tiny immutable surface, hard per-transaction caps, deposits-only pause, and exhaustive enumeration of fund exits.","Automatic fault ruling — on the USDC escrow rail the timeout authority is the contract itself (after the on-chain deadline anyone may trigger payout to the seller, so a lost buyer key can never strand the seller); on Direct Pay, timeouts rule reputation fault (non-custodial: no money moves through WebAZ).","Disputes with evidence + neutral arbitration.","Decision-ready transparency — seller reputation, price history and arbitration precedents are public before you buy.","Agent-native — your AI agent can compare, order and track fulfillment via MCP."],"honesty":"WebAZ is launched with two real rails that use different custody models. Direct Pay is real off-platform payment between buyer and seller — non-custodial, gated, fail-closed by default. USDC on-chain escrow locks real funds in an immutable Base-mainnet contract whose exits are limited to the buyer, seller, or configured platform-fee destination; it is runtime-gated, has not been third-party audited, and is capped per order.","try_it":"Browse now, no account needed → https://webaz.xyz/#discover","get_access":"Registration currently uses invitations for Sybil resistance — request one at https://webaz.xyz/#welcome (browsing needs no invite)."},"network_state":{"phase":"launched","real_users_on_canonical":17,"canonical_endpoint":"https://webaz.xyz","economic_flow":"two real rails with different custody models — (1) USDC on-chain escrow: real USDC is locked in an immutable contract on Base mainnet; contract exits are limited to the original buyer, voucher-bound seller, or configured platform-fee destination; per-order amount capped on-chain; runtime-gated and not third-party audited. (2) Direct Pay: real off-platform payment directly between buyer and seller; principal never enters WebAZ custody.","disclaimer":{"zh":"WebAZ 已公开发布;real_users_on_canonical 实时反映已绑定 Passkey 的账户数。真实交易有两条轨:直付(买卖双方场外直接付款,本金不经过 WebAZ)与 USDC 链上担保(真实 USDC 锁在 Base 主网的不可升级合约中——WebAZ 没有任何密钥能把它转给买家/卖家/平台费三个去向以外的地址;单笔金额有链上上限;该合约未经第三方安全审计)。","en":"WebAZ is publicly launched; real_users_on_canonical reflects the live count of Passkey-bound accounts. Two real rails: Direct Pay (payment moves directly between buyer and seller, never through WebAZ) and USDC on-chain escrow (real USDC locked in an immutable Base-mainnet contract — WebAZ holds no key that can redirect it beyond buyer/seller/fee-sink; per-order cap enforced on-chain; the contract has not been third-party audited)."}},"usdc_escrow_reconciliation":{"invariants":["contract self-conservation: USDC.balanceOf(escrow) >= totalLocked + accruedFees, all three read at the same pinned block — anyone can re-check on Basescan","per-order mirror consistency: every funded order in the DB must be locked on-chain with the exact amount, and every on-chain terminal state must be known to the system","aggregate residual: totalLocked minus the sum of all per-order-verified locks must be zero — no on-chain deposit the system cannot explain"],"cadence":"hourly, pinned to the chain-watcher cursor block; discrepancies page admins per order","latest":{"status":"healthy","checked_at":"2026-08-29T11:37:08.079Z","pinned_block":"50606998","contract_solvent":true,"on_chain_balance_units":"78000","total_locked_units":"0","accrued_fees_units":"78000","surplus_units":"0","per_order_check_passed":true,"open_discrepancies":0,"known_parked":0}},"issuers":{"agent_passport":[{"address":"0xd7c2e3926D4161641c34580B001ba207a0770182","did_web":"did:web:webaz.xyz","did_legacy":"did:webaz:0xd7c2e3926D4161641c34580B001ba207a0770182","scheme":"eip191","purpose":"Phase 4 Agent Passport signing (custodian_fingerprint + risk_score + engagement_depth + behavior_profile)","active_since":"2026-05-30","revoked_at":null,"verify":"verifyMessage(address, passport.canonical, passport.signature) — any party can ecrecover without calling WebAZ"}]},"disclosures":{"source_status":"protocol and governance documents are served at https://webaz.xyz/docs/*; the full machine-readable spec is available via /.well-known/*.","economic_model":"https://webaz.xyz/docs/ECONOMIC-MODEL.md","mlm_compliance":"https://webaz.xyz/docs/PARTICIPATION-ATTRIBUTION-COMPLIANCE.md","agent_governance":"https://webaz.xyz/docs/AGENT-GOVERNANCE.md","changelog":"https://webaz.xyz/docs/CHANGELOG.md","capability_matrix":"https://webaz.xyz/.well-known/webaz-capabilities.json"},"agent_endpoints":{"integration_contract":"https://webaz.xyz/.well-known/webaz-integration.json","remote_mcp":"https://webaz.xyz/mcp","capability_matrix":"https://webaz.xyz/.well-known/webaz-capabilities.json","entity_dictionary":"https://webaz.xyz/.well-known/webaz-entities.json","goal_index":"https://webaz.xyz/.well-known/webaz-goals.json","change_feed":"https://webaz.xyz/api/agent/changes","verifiability_index":"https://webaz.xyz/.well-known/webaz-verifiability.json","economic_participation":"https://webaz.xyz/.well-known/webaz-economic.json","launch_pulse":"https://webaz.xyz/.well-known/webaz-launch-pulse.json","negative_space":"https://webaz.xyz/.well-known/webaz-negative-space.json","event_stream":"https://webaz.xyz/api/agent/events?since=<cursor>","passport":"https://webaz.xyz/api/me/agents/:apiKeyPrefix/passport","did":"https://webaz.xyz/.well-known/did.json","acp_product_feed":"https://webaz.xyz/.well-known/webaz-acp-feed.json"},"roadmap":{"philosophy":"Disclose what is live + what is known-not-yet-done. We do not publish speculative deadlines; we commit to honest enumeration.","completed":["Phase 1-4 Agent Passport: custodian + risk + behavior + signed portable export (cross-protocol ecrecover verifiable)","Phase 3a-3d access control: registration rate-limit + invite-required + declared-scope reads/writes + non-Passkey writers must declare","Iron-Rule: arbitrate / vote / agent_revoke / delete_passkey / large withdraw all require live WebAuthn ceremony","Integrity disclosure: MCP descriptions + /.well-known + payment-status banner + protocol-status endpoint","Cross-user read daily cap — distinct other-user-id per day, Passkey humans capped too (#1043, 2026-05-30)","AP2 Mandate dual-output — verify_price + place_order emit signed AP2 Intent/Cart/Payment Mandate alongside webaz format (B.4 b, 2026-05-30)","Public economic model document — docs/ECONOMIC-MODEL.md (#1050, 2026-05-30)"],"known_next":["Adaptive registration abuse controls beyond verified email + invitations — ongoing hardening","Phase 5 ZK privacy L2/L3 — long-term research; triggered when real cross-protocol consumers appear"],"deliberate_deferrals":["Model B (independent sub-agent keys with delegated scope) — destination locked; not building until real multi-agent demand surfaces","Parameterized fee rates (settleOrder currently hardcodes) — wire when fee governance launches","Binary/PV referral region MLM-term cleanup — region-gated to max=3 areas; deferred until structural decision on tree"],"rationale_for_no_dates":"Shipping dates depend on review, safety and real demand. We publish the work list and the current state instead of speculative deadlines."}}