generated: '2026-08-09' method: derived source: openapi/wegtultrarich-openapi-original.yml + https://api.wegtultrarich.org/README.md standards: - id: openapi-3.0 conforms: true evidence: 'openapi: 3.0.4 document published at https://api.wegtultrarich.org/openapi.yaml (HTTP 200, text/yaml)' - id: apis-json-0.21 conforms: true evidence: 'APIs.json 0.21 index published at /apis.json and /.well-known/apis.json (specificationVersion 0.21)' - id: model-context-protocol conforms: true evidence: >- Streamable-HTTP MCP server at https://api.wegtultrarich.org/mcp answering revisions 2025-03-26, 2025-06-18, 2025-11-25 and 2026-07-28; anonymous tools/list returned 5 tools with inputSchema versions: ['2025-03-26', '2025-06-18', '2025-11-25', '2026-07-28'] - id: mcp-server-json conforms: true evidence: 'server card at /.well-known/mcp.json validating against static.modelcontextprotocol.io/schemas/2025-12-11/server.schema.json' - id: llms-txt conforms: true evidence: 'llms.txt and llms-full.txt published at https://wegtultrarich.org/ (HTTP 200, text/plain)' - id: rfc9116-security-txt conforms: true evidence: '/.well-known/security.txt with Contact, Expires, Canonical and Preferred-Languages fields' - id: json-schema-2020-12 conforms: true evidence: 'MCP tool inputSchema documents declare $schema https://json-schema.org/draft/2020-12/schema' - id: ietf-ratelimit-headers conforms: true evidence: 'RateLimit-Policy / RateLimit-Limit / RateLimit-Remaining / RateLimit-Reset observed live on a 200 response, plus Retry-After on 429' - id: semver conforms: true evidence: 'CHANGELOG.md states adherence to Semantic Versioning 2.0.0; releases 1.2.1 → 1.4.0' - id: keep-a-changelog-1.1.0 conforms: true evidence: 'CHANGELOG.md declares the Keep a Changelog 1.1.0 format and uses Added/Changed/Fixed sections' - id: spectral-governance conforms: true evidence: 'the provider publishes the ruleset its own spec is linted against at /governance/spectral.yaml' - id: cc-by-4.0 conforms: true evidence: 'results and content licensed CC BY 4.0 with a published attribution string' - id: rfc9457-problem-details conforms: false evidence: 'errors use a vendor {status, error:{code, message}} envelope as application/json, not application/problem+json' - id: oauth2 conforms: false evidence: 'no securitySchemes in the OpenAPI; /.well-known/oauth-authorization-server 404' - id: oidc conforms: false evidence: '/.well-known/openid-configuration 404' - id: asyncapi conforms: false evidence: 'no event, streaming or webhook surface exists — not applicable to a synchronous computation API' - id: a2a conforms: false evidence: '/.well-known/agent-card.json and /.well-known/agent.json both 404 on api.wegtultrarich.org and wegtultrarich.org' - id: rfc8594-sunset-header conforms: false evidence: 'no deprecation/sunset policy or header support documented' compliance_program: published: false detail: >- No SOC 2, ISO 27001, PCI DSS, HIPAA, FedRAMP or trust-center attestation is published, and none would be expected: this is a free, no-auth, read-only computation API that collects no personal data and stores no customer records. No `Compliance` pointer is emitted, because there is no published compliance program to point at.