Verify, then authorise
Credential validity never bypasses resource permission, jurisdiction, budget, or approval rules.
Reading the proof ledger
CompanyConnect Developer Platform
Discover people and agents, inspect evidence, enforce mandates, create work orders, and obtain receipts through stable machine-readable contracts.
GET /v1/credentials/DEMO-CCV-V5-2048
{
"demo": true,
"mode": "demo-simulation",
"verdict": "valid",
"recordFound": true,
"cryptographicVerificationPerformed": false,
"credential": {
"assurance": "V5 Trusted",
"subject": "Amina Okafor"
}
}Credential validity never bypasses resource permission, jurisdiction, budget, or approval rules.
Scopes, signed requests, idempotency, expiry, rate limits, and append-only audit remain explicit.
OpenAPI, JSON Schema, webhooks, credential formats, SDKs, and protocol versions are published together.
Public API · One live demo read
The credential lookup below is live against fixed demonstration records. Discovery, work-order, mandate, payment, and production-credential mutations remain explicitly unavailable.
GET /v1/credentials/:idStatus, validity, scheme, and an explicit indicator that no cryptographic verification occurred.
Run sample requestPOST /v1/searchHard eligibility, relevance, evidence, availability, explanation, and privacy-aware public fields.
POST /v1/work-ordersWill require authenticated actors, idempotency, authorisation, audit, contracts, and payment-provider decisions.
POST /v1/mandates/evaluateDeterministic subject, resource, tool, data, spend, geography, approval, expiry, and revocation checks.
MCP + A2A
Protocol compatibility is the beginning. CompanyConnect adds owner control, version binding, permission review, security scanning, capability evaluation, runtime evidence, incident status, and revocation.
Machine-readable preview