drksci / id

Service catalog

Services are discoverable records, not grants. A verified record describes capabilities and a workspace binding; every action still requires an explicit, environment-bound policy decision.

workspace child services

Type
nested workspace endpoint
Capabilities
scoped UI/API selection after verified binding
Workspace
<child>.<parent>.id.drksci.com
Verification
unverified until onboarding and DNS checks complete

Discovery and onboarding

Agents may discover this page from /.well-known/agent-access.json or MCP metadata. Auto-discovery can mark a new service pending while it checks repository, workspace parent, environment, and DNS CNAME/TXT evidence. Pending records do not issue grants. Use first-touch onboarding to request provider setup with explicit human approval.

Could this run smoother? What were you trying to do? · policy assistant · machine discovery · carte