{"name":"WebAZ Protocol","schema_version":29,"software_version":"0.1.33","remote_mcp":{"transport":"streamable_http","endpoint":"https://webaz.xyz/mcp","methods":"POST (JSON-RPC 2.0); GET/DELETE → 405 (stateless, no session)","protocol_version":"2025-03-26","status":"live","authentication":{"anonymous":"public read-only tools (webaz_info / webaz_search / leaderboard / price-history / open build-tasks)","bearer":"Authorization: Bearer <api_key> → authenticated write tools; RISK actions return approve_url (Passkey in browser)","oauth":{"flow":"OAuth 2.1 authorization_code + PKCE(S256) — Connect without pasting an api_key: log in with Passkey, approve SAFE scopes, get a short-lived audience-bound token. RISK actions still return approve_url (human gate unchanged).","protected_resource_metadata":"https://webaz.xyz/.well-known/oauth-protected-resource/mcp","authorization_server_metadata":"https://webaz.xyz/.well-known/oauth-authorization-server"}},"stdio_alternative":"npx -y @seasonkoh/webaz  (local STDIO transport — same full tool surface, for clients that run a local process)","sdks":{"python":"pip install webaz  →  async with WebAZ() as wz: await wz.browse()  (thin wrapper over this endpoint; anonymous by default, api_key for writes)","typescript_stdio":"npx -y @seasonkoh/webaz  (STDIO MCP server)"},"connect_page":"https://webaz.xyz/#connect","anonymous_quickstart":"initialize → tools/list → call webaz_search. Browse the catalog: webaz_search with filters (category/sort/max_price) and NO query. Strict exact-title match when you pass query. Machine catalog: https://webaz.xyz/.well-known/webaz-acp-feed.json","docs":"https://webaz.xyz/docs/REMOTE-MCP.md"},"for_end_user":{"one_liner":"WebAZ is live for commerce through Direct Pay: real off-platform payment straight from buyer to seller, with protocol-recorded order states and evidence. WebAZ is non-custodial and never holds the principal. The escrow rail remains a simulated test flow while additional payment methods are being added. / WebAZ 已发布并可通过直付交易:买家向卖家进行真实场外付款,协议记录订单状态和证据。WebAZ 非托管,不经手本金。托管轨仍为模拟测试流程,其他支付方式持续接入。","why_use":["Direct Pay rail (live, conditions-gated) — pay the seller directly off-platform; non-custodial: WebAZ never holds the principal, does not guarantee and cannot refund, but records risk confirmation + Passkey, payment-info snapshot, order states and evidence for auditability.","Escrow rail — currently a simulated WAZ test flow, not a real payment method. Additional real payment methods are being added.","Automatic fault ruling — seller fails to accept/ship/deliver in time → auto-refund on the escrow rail; on Direct Pay, timeouts rule reputation fault (non-custodial: no money moves through WebAZ).","Disputes with evidence + neutral arbitration.","Decision-ready transparency — seller reputation, price history and arbitration precedents are public before you buy.","Agent-native — your AI agent can compare, order and track fulfillment via MCP."],"honesty":"WebAZ is launched. Direct Pay is real off-platform payment between buyer and seller — non-custodial, gated per seller/product/region/amount, and fail-closed by default. The escrow rail remains simulated and must not be treated as a real payment method.","try_it":"Browse now, no account needed → https://webaz.xyz/#discover","get_access":"Registration currently uses invitations for Sybil resistance — request one at https://webaz.xyz/#welcome (browsing needs no invite)."},"network_state":{"phase":"launched","real_users_on_canonical":12,"canonical_endpoint":"https://webaz.xyz","economic_flow":"dual-rail — escrow rail: simulated WAZ (test currency, 1 WAZ ≈ 1 USDC peg is a模拟基准, not a real exchange rate); no fiat/crypto settles through WebAZ custody. Direct Pay rail: real off-platform payment directly between buyer and seller (non-custodial — WebAZ never holds the principal; conditions-gated per seller/product/region/amount, fail-closed).","disclaimer":{"zh":"WebAZ 已公开发布;real_users_on_canonical 实时反映已绑定 Passkey 的账户数。当前真实交易使用直付轨(Direct Pay):买家与卖家直接进行场外付款,本金不经过 WebAZ。托管轨仍为模拟测试流程,其他支付方式持续接入。","en":"WebAZ is publicly launched; real_users_on_canonical reflects the live count of Passkey-bound accounts. Real transactions currently use Direct Pay: payment moves directly between buyer and seller and never through WebAZ. The escrow rail remains a simulated test flow while additional payment methods are being added."}},"issuers":{"agent_passport":[{"address":"0xd7c2e3926D4161641c34580B001ba207a0770182","did_web":"did:web:webaz.xyz","did_legacy":"did:webaz:0xd7c2e3926D4161641c34580B001ba207a0770182","scheme":"eip191","purpose":"Phase 4 Agent Passport signing (custodian_fingerprint + risk_score + engagement_depth + behavior_profile)","active_since":"2026-05-30","revoked_at":null,"verify":"verifyMessage(address, passport.canonical, passport.signature) — any party can ecrecover without calling WebAZ"}]},"disclosures":{"source_status":"repo is public (github.com/webaz-protocol/webaz); the full spec is also available via /.well-known/*.","economic_model":"https://github.com/webaz-protocol/webaz/blob/main/docs/ECONOMIC-MODEL.md","mlm_compliance":"https://github.com/webaz-protocol/webaz/blob/main/docs/PARTICIPATION-ATTRIBUTION-COMPLIANCE.md","agent_governance":"https://github.com/webaz-protocol/webaz/blob/main/docs/AGENT-GOVERNANCE.md","changelog":"https://github.com/webaz-protocol/webaz/blob/main/CHANGELOG.md","capability_matrix":"https://webaz.xyz/.well-known/webaz-capabilities.json"},"agent_endpoints":{"integration_contract":"https://webaz.xyz/.well-known/webaz-integration.json","remote_mcp":"https://webaz.xyz/mcp","capability_matrix":"https://webaz.xyz/.well-known/webaz-capabilities.json","entity_dictionary":"https://webaz.xyz/.well-known/webaz-entities.json","goal_index":"https://webaz.xyz/.well-known/webaz-goals.json","change_feed":"https://webaz.xyz/api/agent/changes","verifiability_index":"https://webaz.xyz/.well-known/webaz-verifiability.json","economic_participation":"https://webaz.xyz/.well-known/webaz-economic.json","launch_pulse":"https://webaz.xyz/.well-known/webaz-launch-pulse.json","negative_space":"https://webaz.xyz/.well-known/webaz-negative-space.json","event_stream":"https://webaz.xyz/api/agent/events?since=<cursor>","passport":"https://webaz.xyz/api/me/agents/:apiKeyPrefix/passport","did":"https://webaz.xyz/.well-known/did.json","acp_product_feed":"https://webaz.xyz/.well-known/webaz-acp-feed.json"},"roadmap":{"philosophy":"Disclose what is live + what is known-not-yet-done. We do not publish speculative deadlines; we commit to honest enumeration.","completed":["Phase 1-4 Agent Passport: custodian + risk + behavior + signed portable export (cross-protocol ecrecover verifiable)","Phase 3a-3d access control: registration rate-limit + invite-required + declared-scope reads/writes + non-Passkey writers must declare","Iron-Rule: arbitrate / vote / agent_revoke / delete_passkey / large withdraw all require live WebAuthn ceremony","Integrity disclosure: MCP descriptions + /.well-known + payment-status banner + protocol-status endpoint","Cross-user read daily cap — distinct other-user-id per day, Passkey humans capped too (#1043, 2026-05-30)","AP2 Mandate dual-output — verify_price + place_order emit signed AP2 Intent/Cart/Payment Mandate alongside webaz format (B.4 b, 2026-05-30)","Public economic model document — docs/ECONOMIC-MODEL.md (#1050, 2026-05-30)"],"known_next":["Adaptive registration abuse controls beyond verified email + invitations — ongoing hardening","Phase 5 ZK privacy L2/L3 — long-term research; triggered when real cross-protocol consumers appear"],"deliberate_deferrals":["Model B (independent sub-agent keys with delegated scope) — destination locked; not building until real multi-agent demand surfaces","Parameterized fee rates (settleOrder currently hardcodes) — wire when fee governance launches","Binary/PV referral region MLM-term cleanup — region-gated to max=3 areas; deferred until structural decision on tree"],"rationale_for_no_dates":"Shipping dates depend on review, safety and real demand. We publish the work list and the current state instead of speculative deadlines."}}