generated: '2026-09-19' method: derived source: mcp/mandateshield-com-tools-list.json (live tools/list, 2026-09-19) bound to openapi/mandateshield-com-openapi.yml (OpenAPI 3.1.0, contract v3.4.0) surfaces: openapi: file: openapi/mandateshield-com-openapi.yml remote: https://mandateshield.com/openapi.json operations_total: 26 options_operations_excluded: 17 mcp: endpoint: https://mandateshield.com/api/mcp tools_list: anonymous 200 gated: false schema_source: live inputSchema graphql: null crosswalk: - tool: check_ai_payment_authority category: analysis-only policy check rest: - evaluatePurchase binding: rest confidence: high note: inputSchema required set (protocol, mandate_id, agent_id, merchant_id, amount, idempotency_key) is exactly PurchaseEnvelope.required; the tool is the v1 POST /api/v1/preflight projection and always returns enforcement_authorized=false. - tool: normalize_agent_payment_protocol category: protocol adapter (AP2 / x402 v2 / MPP projection) rest: - normalizeAgentPaymentProtocol binding: rest confidence: high note: Same required fields (adapter, source, context) and the same adapter enum as POST /api/v2/normalize. - tool: verify_cryptographic_payment_authority category: strict signed-authority reservation rest: - verifyCryptographicAuthority binding: rest confidence: high note: Same {envelope, evidence} body as POST /api/v2/verify; requires the same VERIFY-scoped bearer key, a registered mandate, pinned issuer key and a fresh challenge from createVerificationChallenge (which has no MCP tool — the challenge must be issued over HTTP first). mcp_only: [] rest_only: - capability: Account execution control operations: - getGlobalExecutionInterlock (GET /api/account/execution-interlock) - setGlobalExecutionInterlock (POST /api/account/execution-interlock) - capability: Production authority operations: - createVerificationChallenge (POST /api/v2/challenges) - transitionExecutionAuthorization (POST /api/v2/execution-authorizations) - verifyCryptographicAuthorityBatch (POST /api/v2/batch) - capability: Execution evidence operations: - verifyExecutionPermit (POST /api/v2/execution-permits/verify) - redeemExecutionPermit (POST /api/v2/execution-permits/redeem) - reportProviderSubmission (POST /api/v2/provider-submissions) - receiveStripeProviderWebhook (POST /api/v2/provider-webhooks/stripe/{connectionId}) - verifyExecutionReceipt (POST /api/v2/execution-receipts/verify) - capability: Receipts operations: - verifyDecisionReceipt (POST /api/v2/receipts/verify) - getReceiptTransparency (GET /api/v2/transparency/{receiptId}) - capability: Analysis only operations: - evaluatePurchaseBatch (POST /api/v1/batch) - capability: Public sandbox operations: - runStrictLifecycleSandbox (POST /api/v2/sandbox/lifecycle) - capability: Public proof network operations: - createPublicProofChallenge (POST /api/v1/proof-network/challenges) - issuePublicProofAttestation (POST /api/v1/proof-network/attestations) - listPublicProofAttestations (GET /api/v1/proof-network/proofs) - getPublicProofAttestation (GET /api/v1/proof-network/proofs/{proofId}) - getPublicProofBadge (GET /api/v1/proof-network/proofs/{proofId}/badge.svg) - capability: Deployment activation proofs operations: - listDeploymentActivationProofs (GET /api/v1/deployment-proofs) - getDeploymentActivationProof (GET /api/v1/deployment-proofs/{proofId}) - getDeploymentActivationProofBadge (GET /api/v1/deployment-proofs/{proofId}/badge.svg) - capability: Advisory intelligence operations: - getThreatIntelligence (GET /api/v1/threat-intelligence) rest_only_note: 'The absence of execution tools is deliberate and documented by the provider: the MCP and A2A surfaces expose no PROCESSOR transition (transitionExecutionAuthorization), permit redemption (redeemExecutionPermit), provider submission (reportProviderSubmission) or account interlock, so an agent can analyze and reserve authority but never move the lifecycle toward provider submission from an MCP result.' coverage: tools_named: 3 tools_bound: 3 mcp_only: 0 rest_operations_total: 26 rest_operations_with_tool: 3 rest_operations_without_tool: 23