ποΈ Capability reference
Every vagary-core capability, generated from its versioned OpenAPI contract (contracts//v1/openapi.yaml). Each page lists the capability's endpoints, auth, key schemas, and (where it exists) its sellable product face. Public access is via the consolidated API gateway β the edge at api. (api.vagarylabs.com master / api.vagaryvoice.cloud voice / api.vagarylife.com life), NOT internal container URLs. This is the master contract authority β a capability's page can only be changed by changing its shipped contract.
ποΈ Ads serving
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Affiliate
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Analytics
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Audit log
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Billing & metering
Usage metering + multi-rail billing as a shared capability β one account buys across products. METERING multi-rail (Dodo/PayPal/crypto/Razorpay; Stripe DORMANT), subscriptions, invoices, dunning. Metering NEVER blocks a product runtime (queue + reconcile). Payment secrets resolved server-side (Infisical), never in body/DB/logs. SELLER OF RECORD differs by rail (ADR-110 D3) we are the seller and our tax is added. stripe is retained but DORMANT β it cannot settle for an India LLP (no PA-CB licence; invite-only) and refuses every charge/refund/capture with 422 regardless of credentials (ADR-110 D4).
ποΈ Campaign orchestration
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ CDN
CDN control-plane. Multi-provider (cloudflare | cloudfront | fastly | direct | stub). Cloudflare purge is capped at 30 URLs/call and requires CLOUDFLAREZONEID + CLOUDFLAREAPITOKEN (env-only); absent creds fall back to 'direct' mode (no upstream purge call, never raising). generatecachekey = sha256 first-32 hex of url + sorted vary headers.
ποΈ CMS
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Compliance
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Config flags
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Contact center
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Content ingestion
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Content moderation
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Conversation intelligence
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Dedup index
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Dialog engine
This capability is granted by an API key scoped to the ai-suite product (product face). See the product reference below.
ποΈ API edge (gateway)
Capability edge. Auth /v1/deliveries -> webhook-egress, /v1/transcribe -> stt. The authenticated organization_id is injected into the forwarded body (anti-spoof).
ποΈ Entitlement
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Eval harness
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Experimentation
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Flow builder
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ i18n
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Identity (OIDC)
The fleet identity provider β one OIDC issuer for all products, so a single account authenticates across the fleet (the cross-product SSO the census found impossible). Signs RS256/JWKS; per-brand realms. Consolidates the 19-service platform auth + voice + bellring (C3). The signing key is resolved server-side and NEVER present in a repo, a consumer, or a facade. Status Phase 1 ETL β G0 gate β Phase 2 repoint-with-fallback β Phase 3 per-consumer deletes (voice last).
ποΈ Long-term memory
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Marketplace
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Media transcode
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Notifications
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Observability
Shared observability instrumentation standard (Track H1). Defines the two unauthenticated, tailnet-scoped exposition endpoints every service serves (GET /metrics Prometheus text; GET /health liveness), the Fix-157 label-cardinality/PII policy that is a MANDATORY SDK default, the structured-log JSON schema, and the OTLP tracing env contract. ZERO new store β emits to the existing substrate one-pane (Prometheus/VictoriaMetrics Β· AlloyβLoki Β· Tempo/OTLP Β· GlitchTip). Full policy: standard.md.
ποΈ Provider gateway
This capability is granted by an API key scoped to the ai-suite product (product face). See the product reference below.
ποΈ Realtime media
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Retrieval
This capability is granted by an API key scoped to the ai-suite product (product face). See the product reference below.
ποΈ Revenue tracking
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Scheduler
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Security
Inbound-security config plane. All /v1/security/* routes are platform-admin gated (Bearer SECURITYADMINTOKEN; fail-CLOSED when unset). The IP-allowlist is a shared Redis Set (I4 shared-contract, NOT a shared DB) with additive-trust, fail-CLOSED semantics. WAF-rule persistence (wafrules) and the SIEM DLQ (siemdlq) are Β§29.5-protected operator-gated migrations β not created by this service.
ποΈ SEO discoverability
SEO discoverability push capability. Submits content URLs to IndexNow (Bing/Yandex) for a (host, key), and pings a WebSub/PubSubHubbub hub in publisher mode that a feed has updated. Both are stateless outbound actions. Also optionally serves the per-host IndexNow verification key file when a deploy owns the hostβkey map (public, unauthenticated β search engines HEAD-probe it).
ποΈ Session store
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Social distribution
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Speech-to-text
This capability is granted by an API key scoped to the speech-api product (product face). See the product reference below.
ποΈ Text-to-speech
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Vertical factory
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.
ποΈ Webhook egress
This capability is granted by an API key scoped to the webhooks product (product face). See the product reference below.
ποΈ Workflow automation
This capability is granted by an API key scoped to the `` product (product face). See the product reference below.