generated: '2026-07-15' method: generated source: openapi/lightspeed-pos-restaurant-k-series-openapi.yml, openapi/lightspeed-pos-retail-r-series-openapi.yml, openapi/lightspeed-pos-retail-x-series-openapi.yml description: Recommended x-agentic-access execution contracts, classified heuristically from the OpenAPI. A governance starting point for exposing this API to AI agents — review and bind audience per deployment. See research/curity/agentic-governance/. summary: operations: 124 by_action_class: connected: 71 acting: 53 by_consequence: read: 71 physical: 11 write: 42 human_in_the_loop_required: 0 operations: - path: /o/op/data/businesses method: get operationId: apeLookupBusinesses x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/data/{businessLocationId}/floorplans method: get operationId: apeLookupFloorPlans x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/data/{businessLocationId}/floorplans/{floorPlanId}/tables method: get operationId: apeGetTables x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/data/account-profiles method: get operationId: apeAccountProfiles x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/data/{businessLocationId}/account-profiles/tagcode/{tagCode} method: get operationId: apeGetAccountProfile x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/menu/list method: get operationId: apeLoadMenus x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/menu/load/{menuId} method: get operationId: apeGetMenuById x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/2/menu/load/{menuId} method: get operationId: apeGetMenuByIdV2 x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/menu/modifiers method: get operationId: apeLoadAllModifiers x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/menu/discounts method: get operationId: apeLoadAllDiscounts x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/order/local method: post operationId: apeLocalOrder x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/op/1/order/toGo method: post operationId: apePlaceToGoOrder x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/op/1/order/table/getCheck method: get operationId: apeGetCheck x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/order/table/{tableNumber}/getCheck method: get operationId: apeCheckLookup x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/order/accounts/{accountIdentifier} method: get operationId: apeCheckLookupWithaccountIdentifier x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/pay method: post operationId: apeMakePayment x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/op/1/printMsg method: post operationId: apePrintMsg x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/op/1/itemAvailability method: get operationId: apeGetRestrictedItems x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/op/1/itemAvailability method: post operationId: apeGetRestrictedItemsByPost x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/wh/1/webhook method: put operationId: apeCreateWebhookOo x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/wh/1/webhook method: post operationId: apeUpdateWebhookOo x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/wh/1/webhook/{endpointId} method: get operationId: apeGetWebhookOo x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/wh/1/webhook/{endpointId} method: delete operationId: apeDeleteWebhookEndpoint x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/wh/1/webhook/{endpointId}/business-locations method: get operationId: apeGetWebhookBusinessLocations x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /o/wh/1/webhook/{endpointId}/business-locations/{businessLocationId} method: put operationId: apeAddWebhookBusinessLocation x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /o/wh/1/webhook/{endpointId}/business-locations/{businessLocationId} method: delete operationId: apeRemoveWebhookBusinessLocation x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /f/data/businesses method: get operationId: financial-apiGetBusinesses x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/tax-rates method: get operationId: financial-apiGetTaxRates x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/paymentMethods method: get operationId: financial-apiGetPaymentMethods x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/accountingGroups method: get operationId: financial-apiGetAccountingGroups x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/financials/{from}/{to} method: get operationId: financial-apiGetFinancials x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/dailyFinancials method: get operationId: financial-apiGetDailyFinancials x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/saleByExternalReference method: get operationId: financial-apiGetReceiptByExternalReference x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/finance/{businessLocationId}/aggregatedSales method: get operationId: financial-apiGetAggregatedSales x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/v2/business-location/{businessLocationId}/sales method: get operationId: financial-apiGetBusinessLocationSales x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/v2/business-location/{businessLocationId}/sales-daily method: get operationId: financial-apiGetBusinessLocationSalesOfABusinessDay x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/v2/business-location/{businessLocationId}/lightspeed-payments method: get operationId: financial-apiGetLightspeedPayments x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /f/v2/beta/business-location/{businessLocationId}/aborted-orders method: get operationId: financial-apiGetBusinessLocationAbortedOrdersOfABusinessDay x-agentic-access: action-class: connected consequence: read subject: optional scope: - financial-api token: max-ttl: 3600 audit: none - path: /id-cards/v1/business-locations/{businessLocationId}/batches method: post operationId: id-cards-apiCreateIdCardBatch x-agentic-access: action-class: acting consequence: write subject: required scope: - id-cards audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /id-cards/v1/business-locations/{businessLocationId}/batches/{batchId}/cards method: post operationId: id-cards-apiCreateIdCards x-agentic-access: action-class: acting consequence: write subject: required scope: - id-cards audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /items/v1/items/{id} method: get operationId: items-apiGetItemById x-agentic-access: action-class: connected consequence: read subject: optional scope: - items token: max-ttl: 3600 audit: none - path: /items/v1/items/{id} method: put operationId: items-apiPut x-agentic-access: action-class: acting consequence: write subject: required scope: - items audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /items/v1/items method: get operationId: items-apiGetItems x-agentic-access: action-class: connected consequence: read subject: optional scope: - items token: max-ttl: 3600 audit: none - path: /items/v1/items method: post operationId: items-apiCreateItem x-agentic-access: action-class: acting consequence: write subject: required scope: - items audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /pms/v1/business-locations/{businessLocationId}/revenue-centers method: get operationId: pms-apiGetRevenueCenters x-agentic-access: action-class: connected consequence: read subject: optional scope: - propertymanagement token: max-ttl: 3600 audit: none - path: /pms/v1/providers/{id} method: get operationId: pms-apiGetProvider x-agentic-access: action-class: connected consequence: read subject: optional scope: - propertymanagement token: max-ttl: 3600 audit: none - path: /pms/v1/providers/{id} method: put operationId: pms-apiUpdateProvider x-agentic-access: action-class: acting consequence: write subject: required scope: - propertymanagement audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /pms/v1/providers/{id} method: delete operationId: pms-apiDeleteProvider x-agentic-access: action-class: acting consequence: write subject: required scope: - propertymanagement audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /pms/v1/providers method: get operationId: pms-apiGetProviders x-agentic-access: action-class: connected consequence: read subject: optional scope: - propertymanagement token: max-ttl: 3600 audit: none - path: /pms/v1/providers method: post operationId: pms-apiCreateProvider x-agentic-access: action-class: acting consequence: write subject: required scope: - propertymanagement audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/integration/onboarding method: post operationId: reservation-serviceOnboardingCallback x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/profile method: get operationId: reservation-serviceGetByPlatformCode x-agentic-access: action-class: connected consequence: read subject: optional scope: - reservation-platform-code token: max-ttl: 3600 audit: none - path: /reservation/api/1/platform/{platform-code}/profile method: post operationId: reservation-serviceSetByPlatformCode x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/course-settings method: patch operationId: reservation-servicePlatformCourseSettings x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/restaurant/{platform-restaurant-id}/reservation/{platform-reservation-id}/push method: put operationId: reservation-servicePushPlatformReservation x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/webhook/auth/api-keys method: patch operationId: reservation-serviceActivateApiKeysAuth x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/webhook/auth/basic-auth method: patch operationId: reservation-serviceActivateBasicAuth x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/webhook/auth/bearer-auth method: patch operationId: reservation-serviceActivateBearerAuthAuth x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/platform/{platform-code}/webhook/auth/oauth2 method: patch operationId: reservation-serviceActivateOAuth2 x-agentic-access: action-class: acting consequence: write subject: required scope: - reservation-platform-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/user/platform/{platform-code}/business-locations method: get operationId: reservation-serviceGetBusinessLocations x-agentic-access: action-class: connected consequence: read subject: optional scope: - user-token-by-authorization-code token: max-ttl: 3600 audit: none - path: /reservation/api/1/user/platform/{platform-code}/integration/activate method: post operationId: reservation-serviceActivatePlatformIntegration x-agentic-access: action-class: acting consequence: write subject: required scope: - user-token-by-authorization-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /reservation/api/1/user/platform/{platform-code}/integration/deactivate method: post operationId: reservation-serviceDeactivatePlatformIntegration x-agentic-access: action-class: acting consequence: write subject: required scope: - user-token-by-authorization-code audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/shift method: get operationId: staff-apiGetShift x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/POS method: get operationId: staff-apiGetPOSStaff x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/POS method: post operationId: staff-apiCreatePOSStaff x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/POS/{staffId} method: put operationId: staff-apiUpdatePOSStaff x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/BACK_OFFICE method: get operationId: staff-apiGetBackOfficeStaff x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/staff/{staffId} method: get operationId: staff-apiGetSingleStaff x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/groups method: get operationId: staff-apiGetPosUserGroups x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/groups/{groupId} method: get operationId: staff-apiGetPosUserGroupById x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/business/{businessId}/assignStaff/{staffId} method: post operationId: staff-apiAddStaffBusinessLocationAccess x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/unAssignStaff/{staffId} method: delete operationId: staff-apiDeleteStaffBusinessLocationAccess x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/webhooks method: post operationId: staff-apiCreateWebhook x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/webhooks method: get operationId: staff-apiGetWebhooks x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/webhooks/{webhookId} method: patch operationId: staff-apiUpdateWebhook x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/webhooks/{webhookId} method: delete operationId: staff-apiDeleteWebhook x-agentic-access: action-class: acting consequence: write subject: required scope: - staff-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/POS/reportAccess method: get operationId: staff-apiGetReportAccessLevels x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/BACK_OFFICE/roles method: get operationId: staff-apiGetBackOfficeUserPermissions x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /staff/v1/businessLocations/{businessLocationId}/userTypes/POS/roles method: get operationId: staff-apiGetPosUserPermissions x-agentic-access: action-class: connected consequence: read subject: optional scope: - staff-api token: max-ttl: 3600 audit: none - path: /tp/v1/business-locations/{businessLocationId}/tax-breakdown method: post operationId: tax-preview-apiTaxBreakdown x-agentic-access: action-class: acting consequence: physical subject: required scope: - orders-api audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/allergens method: get operationId: teckelGetAllergens x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /i/locales/{businessId} method: get operationId: teckelGetLocales x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /i/locales/{businessId} method: put operationId: teckelUpdateLocales x-agentic-access: action-class: acting consequence: write subject: required scope: - orders-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/richItem/{businessId} method: get operationId: teckelGetRichItems x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /i/richItem/{businessId}/{sku} method: get operationId: teckelGetRichItem x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /i/richItem/{businessId}/{sku} method: patch operationId: teckelUpdateRichItemPicture x-agentic-access: action-class: acting consequence: write subject: required scope: - orders-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/richItem/{businessId}/{sku} method: put operationId: teckelCreateOrUpdateRichItem x-agentic-access: action-class: acting consequence: write subject: required scope: - orders-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/richItem/{businessId}/{sku} method: delete operationId: teckelDeleteRichItem x-agentic-access: action-class: acting consequence: write subject: required scope: - orders-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/richItem/{businessId}/itemsBySkus method: post operationId: teckelGetRichItemBySKUs x-agentic-access: action-class: acting consequence: write subject: required scope: - orders-api audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /i/richItem/{businessId}/pictureSpec method: get operationId: teckelGetRichItemPictureSpec x-agentic-access: action-class: connected consequence: read subject: optional scope: - orders-api token: max-ttl: 3600 audit: none - path: /Account.json method: get operationId: getAccount x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:all token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Item.json method: get operationId: getItems x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:inventory_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Item.json method: post operationId: createItem x-agentic-access: action-class: acting consequence: write subject: required scope: - employee:inventory audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /Account/{accountID}/Item/{itemID}.json method: get operationId: getItemById x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:inventory_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Item/{itemID}.json method: put operationId: updateItem x-agentic-access: action-class: acting consequence: write subject: required scope: - employee:inventory audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /Account/{accountID}/Item/{itemID}.json method: delete operationId: deleteItem x-agentic-access: action-class: acting consequence: write subject: required scope: - employee:inventory audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /Account/{accountID}/Sale.json method: get operationId: getSales x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:reports token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Sale.json method: post operationId: createSale x-agentic-access: action-class: acting consequence: write subject: required scope: - employee:register audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /Account/{accountID}/Sale/{saleID}.json method: get operationId: getSaleById x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:reports token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Customer.json method: get operationId: getCustomers x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:customers_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Customer.json method: post operationId: createCustomer x-agentic-access: action-class: acting consequence: write subject: required scope: - employee:customers audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /Account/{accountID}/Customer/{customerID}.json method: get operationId: getCustomerById x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:customers_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Category.json method: get operationId: getCategories x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:inventory_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Manufacturer.json method: get operationId: getManufacturers x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:inventory_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Vendor.json method: get operationId: getVendors x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:inventory_read token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Employee.json method: get operationId: getEmployees x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:admin token: max-ttl: 3600 audit: none - path: /Account/{accountID}/Shop.json method: get operationId: getShops x-agentic-access: action-class: connected consequence: read subject: optional scope: - employee:admin token: max-ttl: 3600 audit: none - path: /brands method: get operationId: listBrands x-agentic-access: action-class: connected consequence: read subject: optional scope: - products.read token: max-ttl: 3600 audit: none - path: /brands method: post operationId: createBrand x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /brands/{id} method: get operationId: getBrand x-agentic-access: action-class: connected consequence: read subject: optional scope: - products.read token: max-ttl: 3600 audit: none - path: /brands/{id} method: put operationId: updateBrand x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /brands/{id} method: delete operationId: deleteBrand x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /products method: get operationId: listProducts x-agentic-access: action-class: connected consequence: read subject: optional scope: - products.read token: max-ttl: 3600 audit: none - path: /products method: post operationId: createProduct x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /products/{id} method: get operationId: getProduct x-agentic-access: action-class: connected consequence: read subject: optional scope: - products.read token: max-ttl: 3600 audit: none - path: /products/{id} method: put operationId: updateProduct x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /sales method: get operationId: listSales x-agentic-access: action-class: connected consequence: read subject: optional scope: - sales.read token: max-ttl: 3600 audit: none - path: /sales method: post operationId: createSale x-agentic-access: action-class: acting consequence: write subject: required scope: - sales.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /sales/{id} method: get operationId: getSale x-agentic-access: action-class: connected consequence: read subject: optional scope: - sales.read token: max-ttl: 3600 audit: none - path: /customers method: get operationId: listCustomers x-agentic-access: action-class: connected consequence: read subject: optional scope: - customers.read token: max-ttl: 3600 audit: none - path: /customers method: post operationId: createCustomer x-agentic-access: action-class: acting consequence: write subject: required scope: - customers.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /customers/{id} method: get operationId: getCustomer x-agentic-access: action-class: connected consequence: read subject: optional scope: - customers.read token: max-ttl: 3600 audit: none - path: /gift_cards method: get operationId: listGiftCards x-agentic-access: action-class: connected consequence: read subject: optional scope: - products.read token: max-ttl: 3600 audit: none - path: /gift_cards method: post operationId: createGiftCard x-agentic-access: action-class: acting consequence: write subject: required scope: - products.write audience: null token: max-ttl: 900 escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required