Organization and ownership
Organization — The administrative company or developer organization that contains one or more Tenants and Workspaces. Tenant — The mandatory Checkfu isolation authority below Organization. It normally remains implicit in builder-facing flows. Workspace — The normal resource, policy, and deployment boundary for Agents, Environments, Sessions, capabilities, governance, and Usage. Agent — Reusable mutable authored configuration. An Agent is not a running process, Session, harness, or AgentBlueprint. AgentVersion — An immutable publication of Agent configuration. Session admission freezes one exact Version. AgentBlueprint — A portable versioned package for desired Agent configuration and related resources. Applying one operates through canonical resource writers; it is not an Agent and does not execute work. AgentBlueprintApplication — The Workspace-local plan, apply, and reconcile journal for an immutable Blueprint publication. Bounded compatibility surfaces may still useBlueprintInstallation; they do not create a second aggregate.
Environment — Reusable execution authority selected at Session admission. It constrains the runtime tuple and other prerequisites that may realize work.