generated: '2026-10-05' method: harvested source: https://hagglebee.com/conformance.json standards: - id: OpenAPI 3.2 conforms: true specification: https://spec.openapis.org/oas/v3.2.0.html evidence: https://hagglebee.com/openapi.yml note: The API contract; linted with zero errors by our Spectral ruleset. - id: OpenAPI Overlay 1.0 conforms: true specification: https://spec.openapis.org/overlay/v1.0.0.html evidence: https://hagglebee.com/overlays/site.yml note: Narrows the shared contract to this site; the result is openapi-site.yml. - id: AsyncAPI 3.0 conforms: true specification: https://www.asyncapi.com/docs/reference/specification/v3.0.0 evidence: https://hagglebee.com/asyncapi.yml note: Webhook events for moderation outcomes. - id: Model Context Protocol conforms: true specification: https://modelcontextprotocol.io/specification evidence: https://hagglebee.com/.well-known/mcp/server-card.json note: Streamable HTTP at /mcp; protocol versions 2025-06-18, 2025-03-26, 2025-11-25. - id: RFC 9457 Problem Details conforms: true specification: https://www.rfc-editor.org/rfc/rfc9457 evidence: https://hagglebee.com/problems/ note: Every API error is application/problem+json with a stable code. - id: Standard Webhooks conforms: true specification: https://www.standardwebhooks.com/ evidence: https://hagglebee.com/developers/#webhooks note: webhook-id, webhook-timestamp and v1 HMAC-SHA256 webhook-signature on every delivery. - id: RateLimit header fields (IETF draft-ietf-httpapi-ratelimit-headers) conforms: true specification: https://datatracker.ietf.org/doc/draft-ietf-httpapi-ratelimit-headers/ evidence: https://hagglebee.com/rate-limits/ note: RateLimit and RateLimit-Policy on search; Retry-After at the limit. - id: Idempotency-Key header (IETF draft-ietf-httpapi-idempotency-key-header) conforms: true specification: https://datatracker.ietf.org/doc/draft-ietf-httpapi-idempotency-key-header/ evidence: https://hagglebee.com/developers/reference/#createPost note: POST /v1/posts replays the first response for a repeated key for 24 hours. - id: OAuth 2.1 (draft-ietf-oauth-v2-1) with PKCE (RFC 7636) conforms: true specification: https://datatracker.ietf.org/doc/draft-ietf-oauth-v2-1/ evidence: https://hagglebee.com/.well-known/oauth-authorization-server note: Authorization code flow only, S256 PKCE required, public clients, rotating refresh tokens. - id: RFC 9728 OAuth Protected Resource Metadata conforms: true specification: https://www.rfc-editor.org/rfc/rfc9728 evidence: https://hagglebee.com/.well-known/oauth-protected-resource/mcp note: For the MCP server; named in WWW-Authenticate on every 401 from /mcp. - id: RFC 8414 OAuth Authorization Server Metadata conforms: true specification: https://www.rfc-editor.org/rfc/rfc8414 evidence: https://hagglebee.com/.well-known/oauth-authorization-server note: One issuer per site. - id: RFC 7591 Dynamic Client Registration conforms: true specification: https://www.rfc-editor.org/rfc/rfc7591 evidence: https://hagglebee.com/developers/#oauth note: POST /v1/oauth/register; public clients, https or loopback redirect URIs. - id: RFC 8707 Resource Indicators conforms: true specification: https://www.rfc-editor.org/rfc/rfc8707 evidence: https://hagglebee.com/oauth/scopes/ note: Access tokens are bound to this site's /mcp and refused on the other sites. - id: RFC 7009 Token Revocation conforms: true specification: https://www.rfc-editor.org/rfc/rfc7009 evidence: https://hagglebee.com/developers/#oauth note: POST /v1/oauth/revoke. - id: RFC 9116 security.txt conforms: true specification: https://www.rfc-editor.org/rfc/rfc9116 evidence: https://hagglebee.com/.well-known/security.txt note: Contact, Expires, Policy and Canonical. - id: RFC 9727 api-catalog conforms: true specification: https://www.rfc-editor.org/rfc/rfc9727 evidence: https://hagglebee.com/.well-known/api-catalog note: application/linkset+json linking the contract, docs, metadata and status. - id: APIs.json conforms: true specification: https://apisjson.org/ evidence: https://hagglebee.com/apis.json note: Machine-readable index of every artifact on the site. - id: llms.txt conforms: true specification: https://llmstxt.org/ evidence: https://hagglebee.com/llms.txt note: Plain-text guide for language models. - id: JSON Feed 1.1 conforms: true specification: https://www.jsonfeed.org/version/1.1/ evidence: https://hagglebee.com/index.json note: Every listing page has a JSON Feed. - id: RSS 2.0 conforms: true specification: https://www.rssboard.org/rss-specification evidence: https://hagglebee.com/feed.xml note: Home and topic feeds. - id: Sitemaps 0.9 conforms: true specification: https://www.sitemaps.org/protocol.html evidence: https://hagglebee.com/sitemap.xml note: Live posts and static pages. - id: schema.org Offer (JSON-LD) conforms: true specification: https://schema.org/Offer evidence: https://hagglebee.com/ note: Every post page carries JSON-LD. - id: Agent Skills conforms: true specification: https://agentskills.io/ evidence: https://hagglebee.com/skills/index.json note: Three SKILL.md files for agents using this site. - id: Postman Collection v2.1 conforms: true specification: https://schema.postman.com/ evidence: https://hagglebee.com/postman/collection.json note: Generated from the contract. - id: Spectral rulesets conforms: true specification: https://docs.stoplight.io/docs/spectral/ evidence: https://hagglebee.com/governance/spectral.yml note: Our API design rules, enforced before every deploy. - id: ISO 3166-1 / 3166-2 conforms: true specification: https://www.iso.org/iso-3166-country-codes.html evidence: https://hagglebee.com/developers/reference/ note: Country and subdivision codes for every location. - id: ISO 4217 conforms: true specification: https://www.iso.org/iso-4217-currency-codes.html evidence: https://hagglebee.com/developers/reference/ note: Currency codes on classified prices. - id: RFC 3339 date-times and IANA time zones conforms: true specification: https://www.rfc-editor.org/rfc/rfc3339 evidence: https://hagglebee.com/developers/reference/ note: All timestamps; events carry an IANA time zone. - id: CC BY 4.0 conforms: true specification: https://creativecommons.org/licenses/by/4.0/ evidence: https://hagglebee.com/terms/ note: The license every published post carries.