Skip to content

evidence.ingest

Append one or more evidence records to the tamper-evident evidence log for the caller’s tenant. Use this to write back what an agent did and observed (the trace that later derives lessons). Server computes tenant_id/hashes/id; do not supply them. actor_type/actor_id are optional — they default to your token’s principal; supply them only to attest a different actor (e.g. a CI bot).

FieldTypeRequiredDescription
evidencearray (nullable)yes(items 1–500)
optionsobject
FieldTypeRequiredDescription
action_typeActionTypefrom the closed high-risk action taxonomy (schemas.md §1)
actor_idstring
actor_typeActorType
artifact_refsarray of string (nullable)
entity_mentionsarray of string (nullable)
event_tsstring (date-time)yes
labelsarray of string (nullable)
metadataobject
payload_refstring
risk_classRiskClass
scope_keystringyeslevel:id, e.g. repo:payments-service
sensitivitySensitivity
source_refstringyes
source_typeSourceTypePublicyes
summarystringyes
workspace_idstringoptional; defaults to your token’s workspace
FieldTypeRequired
deriveboolean (nullable)
idempotency_keystring
FieldTypeRequired
acceptedarray (nullable)yes
chain_headobject (nullable)
rejectedarray (nullable)yes
request_idstring
FieldTypeRequired
chainstringyes
dedupedbooleanyes
derivation_task_idstring
event_hashstringyes
idstringyes
prev_hashstring
FieldTypeRequired
chainstringyes
head_hashstringyes
lengthintegeryes
FieldTypeRequired
codestringyes
indexintegeryes
messagestringyes