generated: '2026-07-15' method: generated source: openapi/tomcat-manager-openapi.yml description: Recommended x-agentic-access execution contracts, classified heuristically from the OpenAPI. A governance starting point for exposing this API to AI agents — review and bind audience per deployment. See research/curity/agentic-governance/. summary: operations: 21 by_action_class: connected: 20 acting: 1 by_consequence: read: 20 physical: 1 human_in_the_loop_required: 0 operations: - path: /text/list method: get operationId: listApplications x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/deploy method: get operationId: deployFromPath x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/deploy method: put operationId: deployWarFile x-agentic-access: action-class: acting consequence: physical subject: required audience: null token: max-ttl: 300 exchange: true purpose-required: true escalation: human-in-the-loop: conditional triggers: - abnormal - high-value audit: required - path: /text/undeploy method: get operationId: undeployApplication x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/start method: get operationId: startApplication x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/stop method: get operationId: stopApplication x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/reload method: get operationId: reloadApplication x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/sessions method: get operationId: getSessionStats x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/expire method: get operationId: expireSessions x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/serverinfo method: get operationId: getServerInfo x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/resources method: get operationId: listGlobalResources x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/findleaks method: get operationId: findMemoryLeaks x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/threaddump method: get operationId: getThreadDump x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/vminfo method: get operationId: getVmInfo x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/sslConnectorCiphers method: get operationId: getSslCiphers x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/sslConnectorCerts method: get operationId: getSslCertificates x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/sslConnectorTrustedCerts method: get operationId: getSslTrustedCertificates x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/sslReload method: get operationId: reloadSslConfiguration x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /text/save method: get operationId: saveConfiguration x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /status method: get operationId: getServerStatus x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none - path: /jmxproxy/ method: get operationId: jmxProxy x-agentic-access: action-class: connected consequence: read subject: optional token: max-ttl: 3600 audit: none