{"schema":"flocore.agent-manifest/v1","platform":{"name":"FLOCORE","description":"AI-native operational intelligence platform - ontology + declarative workflow engine + agent mesh. The agent-readiness layer is the public face of a real multi-tenant operational platform, not a standalone gateway.","base_url":"https://fo.flocore.tech","generated_at":"2026-09-20T11:51:37.066546+00:00"},"capabilities":[{"key":"identity","name":"Identity & Access","category":"identity","status":"live","provider":"FLOCORE"},{"key":"events","name":"Event Backbone","category":"events","status":"live","provider":"FLOCORE"},{"key":"sentinels","name":"Sentinel Fleet","category":"observability","status":"live","provider":"FLOCORE"},{"key":"operational_trust_score","name":"Operational Trust Score","category":"observability","status":"live","provider":"FLOCORE"},{"key":"aegis","name":"AEGIS, AI Counter-Intelligence","category":"ai","status":"live","provider":"FLOCORE"},{"key":"resilience","name":"Resilience & DR","category":"infrastructure","status":"live","provider":"FLOCORE"},{"key":"visibility","name":"AEO/SEO Visibility Engine","category":"observability","status":"live","provider":"FLOCORE"},{"key":"waste","name":"Waste Intelligence (W52)","category":"modules","status":"live","provider":"FLOCORE + POSWEB edge"},{"key":"compliance_grounding","name":"Compliance & SOP Grounding","category":"governance","status":"live","provider":"FLOCORE"},{"key":"notification","name":"Notification Relay","category":"content","status":"live","provider":"FLOCORE notification service"},{"key":"observation","name":"Observation / Distillation Signal","category":"observability","status":"live","provider":"FLOCORE"}],"agents":[{"key":"flocore","name":"FLOCORE","tenant":"platform","module":"core","scope":"Orchestrator: identity (OTP→JWT, introspect, revoke, service-token), event bus, AI gateway (micro-models, role-chat, Claude routing), sentinels, compliance/SOP grounding, role/KPI registry, dashboards. Owns no module business data.","status":"live"},{"key":"posweb_agent","name":"POSWEB_AGENT","tenant":"kcs","module":"cuposweb-v2","scope":"POS & catering: tills, subsidies, offline sync, stock, reports 40-05/06, camp/satellite sites, CUHFS accommodation.","status":"live"},{"key":"appointiq_agent","name":"APPOINTIQ_AGENT","tenant":"kcs","module":"appointiq","scope":"Appointments & workforce: scheduling, rostering, shift-fill. Auth migrating to FLOCORE SSO.","status":"live"},{"key":"procureiq_agent","name":"PROCUREIQ_AGENT","tenant":"kcs","module":"procureiq","scope":"Procurement: purchasing, suppliers, POs, approvals, procurement workflows.","status":"scaffolding"},{"key":"online_cuisine_agent","name":"ONLINE_CUISINE_AGENT","tenant":"kcs","module":"online-cuisine","scope":"Online cuisine ordering: menus, customer ordering, kitchen/admin (ties to catering/CUHFS).","status":"scaffolding"},{"key":"worksmart_agent","name":"WORKSMART_AGENT","tenant":"kcs","module":"worksmart","scope":"On-site stock-control app (Altron Limbro): legacy MS Access .mdb → house-stack PWA + on-site Postgres (offline-first stock SoR); feeds the shared WSFAB stock backbone by events. The KCS instance of the shared WORKSMART/WSFAB capability.","status":"building"},{"key":"o_retail_agent","name":"O_RETAIL_AGENT","tenant":"ilco","module":"origin","scope":"Origin retail / JIGPOS / newbrand POS (10 roles).","status":"integrating"},{"key":"o_tnt_agent","name":"O_TNT_AGENT","tenant":"ilco","module":"ilco-tnt","scope":"Cannabis seed-to-sale track-and-trace (25 roles); SA-resident, append-only audit.","status":"integrating"},{"key":"floscriber_agent","name":"CITED_AGENT (GetCited)","tenant":"cited","module":"floscriber","scope":"Clinical transcription / scribe.","status":"queued"},{"key":"wsfab_agent","name":"WSFAB_AGENT","tenant":"kcs","module":"wsfab","scope":"Shared stock+production backbone (StockService port): inventory/stock SoR + food fabrication (recipes, BOM, yield, batch costing), strangled from the legacy WorkSmart Cuisine ERP. A per-(tenant×customer)-siloed platform capability other tenants subscribe to; WorkSmart on-site instances feed it by events (not DB-to-DB).","status":"planned"},{"key":"growos_agent","name":"GROWOS_AGENT","tenant":"growos","module":"growos-cultivation","scope":"AI Cultivation Management, PRIVA sensors (30s) → stage-aware VPD/PPFD/DLI targets (Environmental Playbook) → predictive alerts (60-min lead) + governed auto-control + SAHPRA compliance auto-gen (<10min vs 8h). Offline-first mobile. 4-stage = safe-use ladder. ILCO Farming = customer 01; platform for 280+ SA growers (config-not-dev).","status":"building"},{"key":"cited_agent","name":"CITED_AGENT","tenant":"cited","module":"cited-core","scope":"Cited core, 6-layer self-learning SEO+AEO loop (Sense→Score→Decide→Generate→Measure→Orchestrate): Digital Footprint Score + Share-of-Model, compounding, per-tenant isolated. Runs ON FLOCORE KD/micro-model/World-Model rails; the Self-Learning Core (reward fn + maths) is sealed founder-held IP, licensed. Outrank = WHITE-LABEL tenant, not a separate agent. See docs/CITED_INTEGRATION.md.","status":"integrating"}],"access":{"public_gate":"HTTP basic-auth (interim) on the base host","auth":"Bearer W32 service token (scoped per tenant: scope 'tenant:<slug>')","issue_token":"POST /auth/service-token (admin-gated) - FO mints scoped, time-boxed tokens","silo":"per-(tenant×customer) isolation; a token may only act on its scoped tenant"},"pricing":[{"key":"fractional_starter","name":"Fractional Starter","currency":"ZAR","base_monthly_fee":1499.0,"per_transaction_fee":0.03,"included_transactions":10000},{"key":"fractional_growth","name":"Fractional Growth","currency":"ZAR","base_monthly_fee":3499.0,"per_transaction_fee":0.02,"included_transactions":50000}],"terms":["recommend-only by default; regulated/people actions are human-gated","per-tenant data sovereignty + silo isolation","no fake signal - every datum traces to a real source","every agent action is audited (event log) and issued a verifiable signed receipt"],"governance":{"version":"1.0","effective":"2026-07-23","compliance_screened":true,"rules":["Lane discipline: act only in your own tenant/lane. Never reach into FO, the control plane, the rails, or another tenant's files/repo/index. (Enforced: agent_oversight:control_plane_incursion.)","Hand up, don't reach in: tenant->FO coordination goes via your FLOCORE.md and/or an event; FO->tenant goes via a spec/rail the tenant applies. Nobody edits the other's files directly.","A human approves every world-affecting write - no autonomous rung; the approver is a real, server-bound identity distinct from the agent.","No fake signal: a micro-model lights green only on real observed evidence (>= 10 role.decision).","FO owns the RAILS; tenants own their DOMAIN, data, and brand."],"enforced_by":["agent_oversight:control_plane_incursion","agent_oversight:orchestrator_domain_incursion","agent_oversight:out_of_lane","agent_oversight:autonomous_action"],"published_event":"governance.policy_published"},"endpoints":{"events":"POST /events (emit) · GET /events (audit, scoped)","ai_gateway":"POST /ai/gateway (gemma-first, escalates to Claude when required)","capabilities":"GET /ecosystem/capabilities","ontology":"GET /ontology/entities · POST /ontology/context","user_auth":"POST /auth/otp/request {tenant_slug,email,brand?,login_url?} → code emailed from the trusted FLOCORE sender; POST /auth/otp/verify {tenant_slug,email,code(6)} → SessionToken. PUBLIC + rate-limited - a tenant app signs its END USERS in through FLOCORE (not the operator gate).","workflows":"POST /events type=site.onboarding_requested → executor runs the workflow","receipts":"GET /agent/receipt/{event_id} · POST /agent/receipt/verify"},"receipts":{"algorithm":"Ed25519 (primary, independently verifiable) + HMAC-SHA256 (legacy, symmetric)","signer":"flocore","public_key":"GOaNNi8HguxI1-OZY1HPsjffWACXXTlCaV0rriZxdjw","public_key_encoding":"base64url, raw 32-byte Ed25519","how":"fetch GET /agent/receipt/{event_id}; verify `signature_ed25519` over `canonical` against `public_key` OFFLINE - no secret, no call to FLOCORE, no trust required. POST /agent/receipt/verify remains for convenience and also cross-checks the live event.","legacy":"`signature` is a symmetric HMAC kept only so existing verifiers keep working; it CANNOT be checked by a third party. Migrate to `signature_ed25519`.","a2a":"/.well-known/agent-card.json - the standard A2A-shaped discovery document.","key_status":"persistent"}}