> ## Documentation Index
> Fetch the complete documentation index at: https://docs.checkfu.com/llms.txt
> Use this file to discover all available pages before exploring further.

# Fork a Session

> Creates an independent Session from a readable prefix of this Session's event ledger. The body is a selector: an empty object takes the committed head, `{ at_event }` an exact event, `{ checkpoint }` a live Checkpoint whose sandbox disk is cloned as well. An `Idempotency-Key` is required, and a 202 fork-progress envelope (`target_session_id`, `phase`, `cursor`, `retry_after_ms`) means retry the exact same request and key until 201 returns the Session. Inherited events keep their ids and sequence numbers, the target appends `session.forked` as its first new event and becomes independently driveable, and no Run leases, waits, or pending ActionApprovals carry over.

Checkfu support posture: alpha; hosted. Required evidence journey: session-turn. Deployment-specific readiness and the latest proven release are available from GET /v1/support/capabilities.



## OpenAPI

````yaml /openapi.json post /v1/sessions/{id}/fork
openapi: 3.1.0
info:
  title: Checkfu API
  version: '2026-08-31'
  description: >-
    Authentication is declared per operation: API-key, runtime, or connector
    bearer; Automation signature; or credential-free pairing redemption. Every
    general Checkfu REST request requires the dated `Checkfu-Version` header
    (one of: 2026-08-31); the three MCP JSON-RPC transports use
    `MCP-Protocol-Version`, A2A uses `A2A-Version`, and the provider OAuth
    callback carries neither Checkfu header. API keys resolve one Workspace
    without a request selector; authenticated responses identify it with
    `Checkfu-Workspace-Id`.
servers:
  - url: https://api.checkfu.com
security:
  - bearerAuth: []
tags:
  - name: organizations
  - name: sourceRepositories
  - name: tenants
  - name: workspaces
  - name: principals
  - name: principalGroups
  - name: principalAccessCredentials
  - name: apiKeys
  - name: agents
  - name: harnesses
  - name: harnessRuntime
  - name: computerProfiles
  - name: permissionAssignments
  - name: actionPolicies
  - name: files
  - name: memoryStores
  - name: dreams
  - name: modelCredentials
  - name: modelRoutingProfiles
  - name: blueprintInstallations
  - name: toolSources
  - name: skills
  - name: skillSources
  - name: agentSources
  - name: skillProposals
  - name: instructionProposals
  - name: catalog
  - name: concepts
  - name: support
  - name: connections
  - name: connectionVaults
  - name: connectionAssignments
  - name: connectedRuntimes
  - name: fileTrees
  - name: collaboration
  - name: automationGraphs
  - name: automations
  - name: actionApprovals
  - name: standingApprovals
  - name: usage
  - name: models
  - name: outcomes
  - name: budgets
  - name: billing
  - name: sessions
  - name: audit
  - name: sessionExports
  - name: runs
  - name: runnerPools
  - name: transcripts
  - name: sessionWatches
  - name: sessionHandoffs
  - name: sessionCapsules
  - name: sessionTrajectories
  - name: webhookEndpoints
  - name: integrationGateway
  - name: workEnvironments
  - name: computers
  - name: computerScreens
  - name: computerBrowserObservations
  - name: computerBrowserActions
  - name: environments
  - name: vaults
  - name: apiMcp
  - name: a2a
paths:
  /v1/sessions/{id}/fork:
    post:
      tags:
        - sessions
      summary: Fork a Session
      description: >-
        Creates an independent Session from a readable prefix of this Session's
        event ledger. The body is a selector: an empty object takes the
        committed head, `{ at_event }` an exact event, `{ checkpoint }` a live
        Checkpoint whose sandbox disk is cloned as well. An `Idempotency-Key` is
        required, and a 202 fork-progress envelope (`target_session_id`,
        `phase`, `cursor`, `retry_after_ms`) means retry the exact same request
        and key until 201 returns the Session. Inherited events keep their ids
        and sequence numbers, the target appends `session.forked` as its first
        new event and becomes independently driveable, and no Run leases, waits,
        or pending ActionApprovals carry over.


        Checkfu support posture: alpha; hosted. Required evidence journey:
        session-turn. Deployment-specific readiness and the latest proven
        release are available from GET /v1/support/capabilities.
      operationId: sessions.forkSession
      parameters:
        - name: id
          in: path
          schema:
            $ref: '#/components/schemas/SessionId'
          required: true
        - name: checkfu-version
          in: header
          schema:
            type: string
            enum:
              - '2026-08-31'
          required: true
        - name: idempotency-key
          in: header
          schema:
            type: string
            allOf:
              - maxLength: 255
              - minLength: 1
          required: true
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/SessionForkSelector'
        required: true
      responses:
        '201':
          description: ManagedAgentsSession
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ManagedAgentsSession_1'
          headers:
            checkfu-workspace-id:
              description: The Workspace resolved from the authenticated bearer credential.
              required: true
              schema:
                $ref: '#/components/schemas/WorkspaceId'
        '202':
          description: Success
          content:
            application/json:
              schema:
                type: object
                properties:
                  target_session_id:
                    $ref: '#/components/schemas/SessionId'
                  status:
                    type: string
                    enum:
                      - pending
                  phase:
                    type: string
                    enum:
                      - selecting_prefix
                      - cloning_checkpoint
                      - copying_history
                      - projecting_history
                      - activating
                  cursor:
                    type: integer
                    allOf:
                      - minimum: 0
                  retry_after_ms:
                    type: integer
                    allOf:
                      - exclusiveMinimum: 0
                required:
                  - target_session_id
                  - status
                  - phase
                  - cursor
                  - retry_after_ms
                additionalProperties: false
          headers:
            checkfu-workspace-id:
              description: The Workspace resolved from the authenticated bearer credential.
              required: true
              schema:
                $ref: '#/components/schemas/WorkspaceId'
        '400':
          description: Typed Checkfu wire error
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ValidationMalformedError'
        '401':
          description: Typed Checkfu wire error
          content:
            application/json:
              schema:
                type: object
                required:
                  - error
                properties:
                  error:
                    type: object
                    required:
                      - type
                      - message
                      - more
                    properties:
                      type:
                        type: string
                        enum:
                          - auth.invalid_key
                      message:
                        type: string
                      more:
                        type: string
                        enum:
                          - >-
                            https://docs.checkfu.com/reference/errors#auth-invalid-key
                        description: >-
                          Stable public documentation and remedy for this error
                          type.
                    additionalProperties: false
                additionalProperties: false
        '403':
          description: >-
            The organization, tenant, or workspace backing this key is
            administratively disabled. | Deployment governance or retention
            policy denied the request.
          content:
            application/json:
              schema:
                anyOf:
                  - type: object
                    required:
                      - error
                    properties:
                      error:
                        type: object
                        properties:
                          type:
                            type: string
                            enum:
                              - auth.disabled_tenancy
                          message:
                            type: string
                          more:
                            type: string
                            enum:
                              - >-
                                https://docs.checkfu.com/reference/errors#auth-disabled-tenancy
                            description: >-
                              Stable public documentation and remedy for this
                              error type.
                        required:
                          - type
                          - message
                          - more
                        additionalProperties: false
                    additionalProperties: false
                  - $ref: '#/components/schemas/PolicyDeniedError'
        '404':
          description: >-
            The requested resource does not exist in the resolved deployment
            boundary.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/ValidationNotFoundError'
        '409':
          description: >-
            The request conflicts with the resource's current state. | An
            idempotent mutation conflicts with a completed or in-progress
            request for the same key. | The checkpoint is no longer available
            for the requested operation. | Session history required by the
            operation has been removed or is unavailable.
          content:
            application/json:
              schema:
                anyOf:
                  - $ref: '#/components/schemas/ValidationConflictError'
                  - $ref: '#/components/schemas/IdempotencyConflictError'
                  - $ref: '#/components/schemas/RuntimeCheckpointExpiredError'
                  - $ref: '#/components/schemas/RuntimeSessionHistoryUnavailableError'
        '429':
          description: Typed Checkfu wire error
          headers:
            retry-after:
              description: >-
                Delay in seconds for rate limits or deployment quotas with a
                known release or UTC reset boundary
              required: false
              schema:
                type: integer
                minimum: 1
          content:
            application/json:
              schema:
                type: object
                required:
                  - error
                properties:
                  error:
                    type: object
                    required:
                      - type
                      - message
                      - more
                    properties:
                      type:
                        type: string
                        enum:
                          - budget.exceeded
                      message:
                        type: string
                      more:
                        type: string
                        enum:
                          - >-
                            https://docs.checkfu.com/reference/errors#budget-exceeded
                        description: >-
                          Stable public documentation and remedy for this error
                          type.
                    additionalProperties: false
                additionalProperties: false
        '500':
          description: >-
            An unexpected internal failure occurred; the message contains an
            opaque incident reference.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/RuntimeInternalError'
        '503':
          description: No eligible Runner can currently claim the work.
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/RuntimeRunnerUnavailableError'
      security:
        - bearerAuth: []
components:
  schemas:
    SessionId:
      type: string
      allOf:
        - pattern: ^sess_[0-9a-f]{32}$
    SessionForkSelector:
      anyOf:
        - type: object
          properties:
            at_event: false
            checkpoint: false
          additionalProperties: false
        - type: object
          properties:
            at_event:
              $ref: '#/components/schemas/EventId'
            checkpoint: false
          required:
            - at_event
          additionalProperties: false
        - type: object
          properties:
            at_event: false
            checkpoint:
              $ref: '#/components/schemas/CheckpointId'
          required:
            - checkpoint
          additionalProperties: false
      description: an empty selector, at_event, or checkpoint
    ManagedAgentsSession_1:
      type: object
      properties:
        id:
          $ref: '#/components/schemas/SessionId'
        agent:
          $ref: '#/components/schemas/ManagedAgentsSessionAgent'
        archived_at:
          $ref: '#/components/schemas/Union_301'
        budget:
          $ref: '#/components/schemas/Union_302'
        created_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        environment_id:
          $ref: '#/components/schemas/EnvironmentId'
        metadata:
          $ref: '#/components/schemas/ResourceMetadata'
        outcome_evaluations:
          $ref: '#/components/schemas/Arrays_48'
        resources:
          $ref: '#/components/schemas/Arrays_49'
        stats:
          $ref: '#/components/schemas/ManagedAgentsSessionStats'
        status:
          $ref: '#/components/schemas/Union_303'
        title:
          $ref: '#/components/schemas/Union_304'
        type:
          type: string
          enum:
            - session
        updated_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        usage:
          $ref: '#/components/schemas/ManagedAgentsSessionUsage'
        vault_ids:
          $ref: '#/components/schemas/Arrays_50'
        automation_id:
          anyOf:
            - $ref: '#/components/schemas/AutomationId'
            - type: 'null'
      required:
        - id
        - agent
        - archived_at
        - budget
        - created_at
        - environment_id
        - metadata
        - outcome_evaluations
        - resources
        - stats
        - status
        - title
        - type
        - updated_at
        - usage
        - vault_ids
      additionalProperties: false
    WorkspaceId:
      type: string
      allOf:
        - pattern: ^wrkspc_[0-9a-f]{32}$
    ValidationMalformedError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - validation.malformed
            message:
              type: string
            more:
              type: string
              enum:
                - https://docs.checkfu.com/reference/errors#validation-malformed
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: >-
        The request could not be decoded or violated a declared input
        constraint.
    PolicyDeniedError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - policy.denied
            message:
              type: string
            more:
              type: string
              enum:
                - https://docs.checkfu.com/reference/errors#policy-denied
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: Deployment governance or retention policy denied the request.
    ValidationNotFoundError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - validation.not_found
            message:
              type: string
            more:
              type: string
              enum:
                - https://docs.checkfu.com/reference/errors#validation-not-found
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: >-
        The requested resource does not exist in the resolved deployment
        boundary.
    ValidationConflictError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - validation.conflict
            message:
              type: string
            more:
              type: string
              enum:
                - https://docs.checkfu.com/reference/errors#validation-conflict
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: The request conflicts with the resource's current state.
    IdempotencyConflictError:
      anyOf:
        - $ref: '#/components/schemas/ValidationIdempotencyConflictError'
        - $ref: '#/components/schemas/ValidationIdempotencyInProgressError'
      description: >-
        An idempotent mutation conflicts with a completed or in-progress request
        for the same key.
    RuntimeCheckpointExpiredError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - runtime.checkpoint_expired
            message:
              type: string
            more:
              type: string
              enum:
                - >-
                  https://docs.checkfu.com/reference/errors#runtime-checkpoint-expired
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: The checkpoint is no longer available for the requested operation.
    RuntimeSessionHistoryUnavailableError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - runtime.session_history_unavailable
            message:
              type: string
            more:
              type: string
              enum:
                - >-
                  https://docs.checkfu.com/reference/errors#runtime-session-history-unavailable
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: >-
        Session history required by the operation has been removed or is
        unavailable.
    RuntimeInternalError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - runtime.internal
            message:
              type: string
            more:
              type: string
              enum:
                - https://docs.checkfu.com/reference/errors#runtime-internal
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: >-
        An unexpected internal failure occurred; the message contains an opaque
        incident reference.
    RuntimeRunnerUnavailableError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - runtime.runner_unavailable
            message:
              type: string
            more:
              type: string
              enum:
                - >-
                  https://docs.checkfu.com/reference/errors#runtime-runner-unavailable
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: No eligible Runner can currently claim the work.
    EventId:
      type: string
      allOf:
        - pattern: ^evt_[0-9a-f]{32}$
    CheckpointId:
      type: string
      allOf:
        - pattern: ^ckpt_[0-9a-f]{32}$
    ManagedAgentsSessionAgent:
      type: object
      properties:
        id:
          $ref: '#/components/schemas/AgentId'
        description:
          $ref: '#/components/schemas/Union_32'
        harness:
          $ref: '#/components/schemas/Union_31'
        mcp_servers:
          $ref: '#/components/schemas/Arrays_5'
        model:
          $ref: '#/components/schemas/ManagedAgentsModelConfig'
        name:
          type: string
          allOf:
            - minLength: 1
            - maxLength: 255
        skills:
          $ref: '#/components/schemas/Arrays_6'
        system:
          $ref: '#/components/schemas/Union_34'
        tools:
          $ref: '#/components/schemas/Arrays_7'
        multiagent:
          anyOf:
            - $ref: '#/components/schemas/ManagedAgentsSessionMultiagentCoordinator'
            - type: 'null'
        type:
          type: string
          enum:
            - agent
        version:
          type: integer
          allOf:
            - exclusiveMinimum: 0
      required:
        - id
        - description
        - harness
        - mcp_servers
        - model
        - name
        - skills
        - system
        - tools
        - multiagent
        - type
        - version
      additionalProperties: false
    Union_301:
      anyOf:
        - $ref: '#/components/schemas/CurrentTimestamp'
        - type: 'null'
    Union_302:
      anyOf:
        - $ref: '#/components/schemas/ManagedAgentsBudgetLimit'
        - type: 'null'
    CurrentTimestamp:
      type: string
      allOf:
        - maxLength: 24
        - pattern: ^\d{4}-\d{2}-\d{2}T\d{2}:\d{2}:\d{2}\.\d{3}Z$
          description: A canonical UTC ISO-8601 timestamp with millisecond precision.
    EnvironmentId:
      type: string
      allOf:
        - pattern: ^env_[0-9a-f]{32}$
    ResourceMetadata:
      type: object
      additionalProperties:
        type: string
        allOf:
          - maxLength: 512
      allOf:
        - propertyNames:
            type: string
            allOf:
              - minLength: 1
              - maxLength: 64
        - maxProperties: 16
          description: at most 16 correlation pairs with keys of 1 to 64 characters
    Arrays_48:
      type: array
      items:
        $ref: '#/components/schemas/ManagedAgentsOutcomeEvaluationResource'
    Arrays_49:
      type: array
      items:
        $ref: '#/components/schemas/ManagedAgentsSessionResource'
    ManagedAgentsSessionStats:
      type: object
      properties:
        active_seconds:
          type: number
          allOf:
            - minimum: 0
        duration_seconds:
          type: number
          allOf:
            - minimum: 0
      additionalProperties: false
    Union_303:
      type: string
      enum:
        - rescheduling
        - running
        - idle
        - terminated
    Union_304:
      anyOf:
        - type: string
        - type: 'null'
    ManagedAgentsSessionUsage:
      type: object
      properties:
        active_seconds:
          type: number
          allOf:
            - minimum: 0
        cache_creation:
          $ref: '#/components/schemas/ManagedAgentsCacheCreationUsage'
        cache_read_input_tokens:
          type: integer
          allOf:
            - minimum: 0
        input_tokens:
          type: integer
          allOf:
            - minimum: 0
        list_cost:
          anyOf:
            - $ref: '#/components/schemas/MonetaryAmount'
            - type: 'null'
        output_tokens:
          type: integer
          allOf:
            - minimum: 0
        server_tool_use:
          anyOf:
            - $ref: '#/components/schemas/ManagedAgentsServerToolUsage'
            - type: 'null'
      additionalProperties: false
    Arrays_50:
      type: array
      items:
        $ref: '#/components/schemas/VaultId'
    AutomationId:
      type: string
      allOf:
        - pattern: ^auto_[0-9a-f]{32}$
    ValidationIdempotencyConflictError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - validation.idempotency_conflict
            message:
              type: string
            more:
              type: string
              enum:
                - >-
                  https://docs.checkfu.com/reference/errors#validation-idempotency-conflict
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: The Idempotency-Key is already bound to a different request.
    ValidationIdempotencyInProgressError:
      type: object
      properties:
        error:
          type: object
          properties:
            type:
              type: string
              enum:
                - validation.idempotency_in_progress
            message:
              type: string
            more:
              type: string
              enum:
                - >-
                  https://docs.checkfu.com/reference/errors#validation-idempotency-in-progress
              description: Stable public documentation and remedy for this error type.
          required:
            - type
            - message
            - more
          additionalProperties: false
      required:
        - error
      additionalProperties: false
      description: >-
        An identical idempotent request is still in progress and may be retried
        later.
    AgentId:
      type: string
      allOf:
        - pattern: ^agent_[0-9a-f]{32}$
    Union_32:
      anyOf:
        - type: string
        - type: 'null'
    Union_31:
      anyOf:
        - $ref: '#/components/schemas/ManagedAgentsHarnessReference'
        - type: 'null'
    Arrays_5:
      type: array
      items:
        $ref: '#/components/schemas/Objects_12'
    ManagedAgentsModelConfig:
      type: object
      properties:
        id:
          type: string
        effort:
          anyOf:
            - type: object
              properties:
                type:
                  type: string
                  enum:
                    - low
              required:
                - type
              additionalProperties: false
            - type: object
              properties:
                type:
                  type: string
                  enum:
                    - medium
              required:
                - type
              additionalProperties: false
            - type: object
              properties:
                type:
                  type: string
                  enum:
                    - high
              required:
                - type
              additionalProperties: false
            - type: object
              properties:
                type:
                  type: string
                  enum:
                    - xhigh
              required:
                - type
              additionalProperties: false
            - type: object
              properties:
                type:
                  type: string
                  enum:
                    - max
              required:
                - type
              additionalProperties: false
        inference_geo:
          type: string
          enum:
            - global
            - us
        speed:
          type: string
          enum:
            - standard
            - fast
      required:
        - id
      additionalProperties: false
    Arrays_6:
      type: array
      items:
        anyOf:
          - type: object
            properties:
              type:
                type: string
                enum:
                  - anthropic
              skill_id:
                type: string
              version:
                type: string
            required:
              - type
              - skill_id
              - version
            additionalProperties: false
          - type: object
            properties:
              type:
                type: string
                enum:
                  - custom
              skill_id:
                type: string
              version:
                type: string
            required:
              - type
              - skill_id
              - version
            additionalProperties: false
    Union_34:
      anyOf:
        - type: string
        - type: 'null'
    Arrays_7:
      type: array
      items:
        $ref: '#/components/schemas/ManagedAgentsTool'
    ManagedAgentsSessionMultiagentCoordinator:
      type: object
      properties:
        agents:
          type: array
          items:
            anyOf:
              - $ref: '#/components/schemas/ManagedAgentsSessionThreadAgent'
              - $ref: '#/components/schemas/ManagedAgentsAdvisor'
        type:
          type: string
          enum:
            - coordinator
      required:
        - agents
        - type
      additionalProperties: false
    ManagedAgentsBudgetLimit:
      type: object
      properties:
        type:
          type: string
          enum:
            - limit
        max_list_cost:
          type: object
          properties:
            amount:
              type: string
              allOf:
                - pattern: ^[1-9][0-9]*$
            currency:
              type: string
              enum:
                - USD
          required:
            - amount
            - currency
          additionalProperties: false
      required:
        - type
        - max_list_cost
      additionalProperties: false
    ManagedAgentsOutcomeEvaluationResource:
      type: object
      properties:
        completed_at:
          anyOf:
            - $ref: '#/components/schemas/CurrentTimestamp'
            - type: 'null'
        description:
          type: string
        explanation:
          anyOf:
            - type: string
            - type: 'null'
        iteration:
          type: integer
          allOf:
            - minimum: 0
        outcome_id:
          $ref: '#/components/schemas/OutcomeId'
        result:
          type: string
        type:
          type: string
          enum:
            - outcome_evaluation
      required:
        - completed_at
        - description
        - explanation
        - iteration
        - outcome_id
        - result
        - type
      additionalProperties: false
    ManagedAgentsSessionResource:
      anyOf:
        - $ref: '#/components/schemas/ManagedAgentsGitHubRepositoryResource'
        - $ref: '#/components/schemas/ManagedAgentsFileResource'
        - $ref: '#/components/schemas/ManagedAgentsMemoryStoreResource'
    ManagedAgentsCacheCreationUsage:
      type: object
      properties:
        ephemeral_1h_input_tokens:
          type: integer
          allOf:
            - minimum: 0
        ephemeral_5m_input_tokens:
          type: integer
          allOf:
            - minimum: 0
      additionalProperties: false
    MonetaryAmount:
      type: object
      properties:
        amount:
          type: string
          allOf:
            - pattern: ^(0|[1-9][0-9]*)$
        currency:
          type: string
          enum:
            - USD
      required:
        - amount
        - currency
      additionalProperties: false
    ManagedAgentsServerToolUsage:
      type: object
      properties:
        web_fetch_requests:
          type: integer
          allOf:
            - minimum: 0
        web_search_requests:
          type: integer
          allOf:
            - minimum: 0
      additionalProperties: false
    VaultId:
      type: string
      allOf:
        - pattern: ^vlt_[0-9a-f]{32}$
    ManagedAgentsHarnessReference:
      type: string
      allOf:
        - pattern: ^[a-z0-9](?:[a-z0-9._-]{0,93})(?:@(?:latest|[1-9][0-9]{0,8}))?$
          description: >-
            a harness catalog name this deployment serves: checkfu, claude-code,
            codex, cursor, hermes, openclaw, openclaw-connected, opencode, pi
    Objects_12:
      type: object
      properties:
        type:
          type: string
          enum:
            - url
        name:
          type: string
          allOf:
            - minLength: 1
            - maxLength: 255
        url:
          type: string
          allOf:
            - minLength: 1
            - maxLength: 2048
      required:
        - type
        - name
        - url
      additionalProperties: false
    ManagedAgentsTool:
      anyOf:
        - type: object
          properties:
            type:
              type: string
              enum:
                - agent_toolset_20260401
            configs:
              type: array
              items:
                anyOf:
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - bash
                      type:
                        type: string
                        enum:
                          - bash
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - edit
                      type:
                        type: string
                        enum:
                          - edit
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - glob
                      type:
                        type: string
                        enum:
                          - glob
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - grep
                      type:
                        type: string
                        enum:
                          - grep
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - read
                      type:
                        type: string
                        enum:
                          - read
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - web_fetch
                      type:
                        type: string
                        enum:
                          - web_fetch
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                      allowed_domains:
                        $ref: '#/components/schemas/Arrays_4'
                      blocked_domains:
                        $ref: '#/components/schemas/Arrays_4'
                      max_content_tokens:
                        anyOf:
                          - type: integer
                            allOf:
                              - exclusiveMinimum: 0
                          - type: 'null'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - web_search
                      type:
                        type: string
                        enum:
                          - web_search
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                      allowed_domains:
                        $ref: '#/components/schemas/Arrays_4'
                      blocked_domains:
                        $ref: '#/components/schemas/Arrays_4'
                      user_location:
                        anyOf:
                          - $ref: '#/components/schemas/Objects_15'
                          - type: 'null'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
                  - type: object
                    properties:
                      name:
                        type: string
                        enum:
                          - write
                      type:
                        type: string
                        enum:
                          - write
                      enabled:
                        type: boolean
                      permission_policy:
                        $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                    required:
                      - name
                      - type
                      - enabled
                      - permission_policy
                    additionalProperties: false
            default_config:
              $ref: '#/components/schemas/Objects_18'
          required:
            - type
            - configs
            - default_config
          additionalProperties: false
        - type: object
          properties:
            type:
              type: string
              enum:
                - mcp_toolset
            mcp_server_name:
              type: string
              allOf:
                - minLength: 1
                - maxLength: 255
            configs:
              type: array
              items:
                type: object
                properties:
                  name:
                    type: string
                  enabled:
                    type: boolean
                  permission_policy:
                    $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
                required:
                  - name
                  - enabled
                  - permission_policy
                additionalProperties: false
            default_config:
              $ref: '#/components/schemas/Objects_18'
          required:
            - type
            - mcp_server_name
            - configs
            - default_config
          additionalProperties: false
        - $ref: '#/components/schemas/Objects_17'
    ManagedAgentsSessionThreadAgent:
      type: object
      properties:
        id:
          $ref: '#/components/schemas/AgentId'
        description:
          $ref: '#/components/schemas/Union_32'
        harness:
          $ref: '#/components/schemas/Union_31'
        mcp_servers:
          $ref: '#/components/schemas/Arrays_5'
        model:
          $ref: '#/components/schemas/ManagedAgentsModelConfig'
        name:
          type: string
          allOf:
            - minLength: 1
            - maxLength: 255
        skills:
          $ref: '#/components/schemas/Arrays_6'
        system:
          $ref: '#/components/schemas/Union_34'
        tools:
          $ref: '#/components/schemas/Arrays_7'
        type:
          type: string
          enum:
            - agent
        version:
          type: integer
          allOf:
            - exclusiveMinimum: 0
      required:
        - id
        - description
        - harness
        - mcp_servers
        - model
        - name
        - skills
        - system
        - tools
        - type
        - version
      additionalProperties: false
    ManagedAgentsAdvisor:
      type: object
      properties:
        model:
          type: string
        type:
          type: string
          enum:
            - advisor
      required:
        - model
        - type
      additionalProperties: false
    OutcomeId:
      type: string
      allOf:
        - pattern: ^outc_[0-9a-f]{32}$
    ManagedAgentsGitHubRepositoryResource:
      type: object
      properties:
        id:
          $ref: '#/components/schemas/SessionResourceId'
        created_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        updated_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        mount_path:
          $ref: '#/components/schemas/CurrentMountPath'
        type:
          type: string
          enum:
            - github_repository
        url:
          $ref: '#/components/schemas/ManagedAgentsGitHubRepositoryUrl'
        checkout:
          anyOf:
            - $ref: '#/components/schemas/ManagedAgentsRepositoryCheckout'
            - type: 'null'
      required:
        - id
        - created_at
        - updated_at
        - mount_path
        - type
        - url
      additionalProperties: false
    ManagedAgentsFileResource:
      type: object
      properties:
        id:
          $ref: '#/components/schemas/SessionResourceId'
        created_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        updated_at:
          $ref: '#/components/schemas/CurrentTimestamp'
        file_id:
          $ref: '#/components/schemas/FileId'
        mount_path:
          $ref: '#/components/schemas/CurrentMountPath'
        type:
          type: string
          enum:
            - file
      required:
        - id
        - created_at
        - updated_at
        - file_id
        - mount_path
        - type
      additionalProperties: false
    ManagedAgentsMemoryStoreResource:
      type: object
      properties:
        memory_store_id:
          $ref: '#/components/schemas/MemoryStoreId'
        type:
          type: string
          enum:
            - memory_store
        access:
          anyOf:
            - type: string
              enum:
                - read_write
                - read_only
            - type: 'null'
        description:
          type: string
        instructions:
          anyOf:
            - type: string
              allOf:
                - minLength: 1
                - maxLength: 4096
            - type: 'null'
        mount_path:
          anyOf:
            - $ref: '#/components/schemas/CurrentMountPath'
            - type: 'null'
        name:
          anyOf:
            - type: string
            - type: 'null'
      required:
        - memory_store_id
        - type
      additionalProperties: false
    ManagedAgentsPermissionPolicy:
      anyOf:
        - type: object
          properties:
            type:
              type: string
              enum:
                - always_allow
          required:
            - type
          additionalProperties: false
        - type: object
          properties:
            type:
              type: string
              enum:
                - always_ask
          required:
            - type
          additionalProperties: false
    Arrays_4:
      type: array
      items:
        type: string
        allOf:
          - minLength: 1
          - maxLength: 255
      allOf:
        - minItems: 1
        - maxItems: 64
    Objects_15:
      type: object
      properties:
        type:
          type: string
          enum:
            - approximate
        city:
          anyOf:
            - type: string
            - type: 'null'
        country:
          anyOf:
            - $ref: '#/components/schemas/ManagedAgentsIsoCountryCode'
            - type: 'null'
        region:
          anyOf:
            - type: string
            - type: 'null'
        timezone:
          anyOf:
            - $ref: '#/components/schemas/ManagedAgentsIanaTimeZone'
            - type: 'null'
      required:
        - type
      additionalProperties: false
    Objects_18:
      type: object
      properties:
        enabled:
          type: boolean
        permission_policy:
          $ref: '#/components/schemas/ManagedAgentsPermissionPolicy'
      required:
        - enabled
        - permission_policy
      additionalProperties: false
    Objects_17:
      type: object
      properties:
        type:
          type: string
          enum:
            - custom
        name:
          type: string
          allOf:
            - minLength: 1
            - maxLength: 128
            - pattern: ^[A-Za-z0-9_-]+$
        description:
          type: string
          allOf:
            - minLength: 1
        input_schema:
          $ref: '#/components/schemas/ManagedAgentsCustomToolInputSchema'
      required:
        - type
        - name
        - description
        - input_schema
      additionalProperties: false
    SessionResourceId:
      type: string
      allOf:
        - pattern: ^sesrsc_[0-9a-f]{32}$
    CurrentMountPath:
      type: string
      allOf:
        - minLength: 2
        - maxLength: 1024
    ManagedAgentsGitHubRepositoryUrl:
      type: string
    ManagedAgentsRepositoryCheckout:
      anyOf:
        - type: object
          properties:
            type:
              type: string
              enum:
                - branch
            name:
              type: string
              allOf:
                - minLength: 1
          required:
            - type
            - name
          additionalProperties: false
        - type: object
          properties:
            type:
              type: string
              enum:
                - commit
            sha:
              type: string
              allOf:
                - pattern: ^[0-9a-f]{40}$
          required:
            - type
            - sha
          additionalProperties: false
    FileId:
      type: string
      allOf:
        - pattern: ^file_[0-9a-f]{32}$
    MemoryStoreId:
      type: string
      allOf:
        - pattern: ^memstore_[0-9a-f]{32}$
    ManagedAgentsIsoCountryCode:
      type: string
      allOf:
        - pattern: ^[A-Z]{2}$
    ManagedAgentsIanaTimeZone:
      type: string
      allOf:
        - minLength: 1
        - maxLength: 255
    ManagedAgentsCustomToolInputSchema:
      type: object
      properties:
        type:
          type: string
          enum:
            - object
        properties:
          anyOf:
            - type: object
              additionalProperties:
                $ref: '#/components/schemas/JsonValue'
            - type: 'null'
        required:
          anyOf:
            - type: array
              items:
                type: string
            - type: 'null'
      required:
        - type
      additionalProperties:
        $ref: '#/components/schemas/JsonValue'
      description: JSON Schema for custom tool input parameters.
    JsonValue:
      description: >-
        A value in the JSON data model: null, boolean, finite number, string,
        array, or object.
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer

````