Skip to content
Back to GSC Registry

Card snapshot

gsc-registry.ai · 2026-08-31 10:36:17 UTC · 1e7e10b5e128890ed68f06892d91257fcb5060eae033413c51efe09c187aaa79

This is a frozen copy of the agent's agent-card.json as we observed it at the timestamp above. We capture a new snapshot every time the card's content hash changes. Useful for: forensic drift analysis, verifying downstream callers see the right version, reproducing routing decisions made historically.

{
  "name": "GSC Registry",
  "description": "The GSC resolver \u2014 the working index of everything GSC operates. Ask it about a GSC AI Agent or surface, get verified facts back: signed records, key-attested against the estate keyring at dpuone.ai. 90 hostnames indexed.",
  "supportedInterfaces": [
    {
      "url": "https://gsc-registry.ai/resolve",
      "protocolBinding": "HTTP+JSON",
      "protocolVersion": "1.0"
    },
    {
      "url": "https://gsc-registry.ai/",
      "protocolBinding": "HTTP+JSON",
      "protocolVersion": "1.0"
    }
  ],
  "provider": {
    "url": "https://gsc-em.com",
    "organization": "GreenCore Solutions Corp."
  },
  "version": "1.0.0",
  "documentationUrl": "https://gsc-registry.ai/llms.txt",
  "capabilities": {
    "streaming": false,
    "pushNotifications": false,
    "extensions": [
      {
        "uri": "https://gsc-em.com/a2a/ext/scope-of-authority/v1",
        "description": "GSC scope of authority: read, resolve and discovery calls are autonomous; every transactional commit is human-signed at the GSC Navigator HITL boundary.",
        "required": false,
        "params": {
          "autonomous": [
            "read",
            "resolve",
            "discover"
          ],
          "humanSigned": [
            "transactional-commit",
            "order",
            "rfq-acceptance",
            "terms"
          ],
          "hitlBoundary": "https://gsc-navigator.ai/",
          "transactionSurface": "https://mcp.cpghumanintheloop.ai/mcp"
        }
      },
      {
        "uri": "https://gsc-em.com/a2a/ext/registry-attestation/v1",
        "description": "The one resolver \u2014 the authority on estate facts; the dpuone.ai keyring is the authoritative key set. The resolver attests the key; the key signs the cards and the readings.",
        "required": false,
        "params": {
          "role": "authority",
          "authoritativeKeyring": "https://dpuone.ai/.well-known/jwks.json",
          "keyringAttestation": "https://gsc-registry.ai/keyring.json"
        }
      },
      {
        "uri": "https://gsc-em.com/a2a/ext/enforcement-posture/v1",
        "description": "These endpoints are open by design. When the buy side's credential standard reaches GA \u2014 expected Q4 2026-Q1 2027 \u2014 transactional methods migrate to OAuth 2.1 challenge per the MCP 2025-11-25 specification. Read access stays open. That is not pending work; that is the published plan.",
        "required": false,
        "params": {
          "enforcement_posture": "open-by-declaration",
          "migration_standard": "OAuth 2.1 + PKCE challenge (401 + WWW-Authenticate) on mcp:transact methods, per MCP spec 2025-11-25",
          "migration_trigger": "ecosystem GA of credentialed counterparties (enterprise A2A/MCP buy-side GA)",
          "migration_window": "Q4 2026 - Q1 2027",
          "declared": "2026-08-24",
          "operator": "GreenCore Solutions Corp.",
          "duns": "24-336-6774"
        }
      }
    ]
  },
  "securitySchemes": {
    "entraOAuth2": {
      "oauth2SecurityScheme": {
        "description": "Microsoft Entra OAuth 2.0 client credentials, GSC-provisioned after human review. Public reads on this surface are open by design; tokens are required where commitments are made.",
        "flows": {
          "clientCredentials": {
            "tokenUrl": "https://login.microsoftonline.com/54939635-2f2e-465a-8526-a907cb3c8ebd/oauth2/v2.0/token",
            "scopes": {
              "registry:read": "Read the GSC resolver's facts records, index, and attestation."
            }
          }
        },
        "oauth2MetadataUrl": "https://gsc-registry.ai/.well-known/oauth-authorization-server"
      }
    },
    "bearerJwt": {
      "httpAuthSecurityScheme": {
        "scheme": "Bearer",
        "bearerFormat": "JWT",
        "description": "Bearer access token presented in the Authorization header."
      }
    }
  },
  "defaultInputModes": [
    "application/json",
    "text/plain"
  ],
  "defaultOutputModes": [
    "application/json",
    "text/markdown"
  ],
  "skills": [
    {
      "id": "resolve-host",
      "name": "Resolve a GSC hostname",
      "description": "GET https://gsc-registry.ai/resolve/<hostname> \u2014 a signed facts record: operator, fleet membership, card + kid, key attestation, signal endpoint, jurisdiction, as-of. Unknown host = honest 404.",
      "tags": [
        "resolver",
        "registry",
        "facts"
      ]
    },
    {
      "id": "estate-index",
      "name": "The estate index",
      "description": "GET https://gsc-registry.ai/index.json \u2014 every indexed hostname with its record pointer, paged.",
      "tags": [
        "registry",
        "index"
      ]
    },
    {
      "id": "keyring-attestation",
      "name": "Keyring attestation",
      "description": "GET https://gsc-registry.ai/keyring.json \u2014 the resolver attests the authoritative keyring at https://dpuone.ai/.well-known/jwks.json.",
      "tags": [
        "keyring",
        "attestation",
        "trust"
      ]
    }
  ],
  "signatures": [
    {
      "protected": "eyJhbGciOiJFUzI1NiIsImtpZCI6ImdzYy1jYXJkcy0yMDI2LTA4In0",
      "signature": "Vq_NEgg_ThN2MB1_7PDPcZpYhKc5KqQTjR0WEL742jm5ewhqtBpr4ns7eW5SJ08mBxkGEq40xkW3WRG26krkXw"
    }
  ]
}