{"schema_version":"verify.compare.v1","generated_at":"2026-09-09T15:07:13.135313+00:00","count":1,"missing_servers":[],"results":[{"server_id":"ai.borealhost/mcp","display_name":"BorealHost","profile_url":"https://verify.sentinelsignal.io/servers/ai.borealhost/mcp","compare_url":"https://verify.sentinelsignal.io/compare?server=ai.borealhost%2Fmcp","trust_summary_url":"https://verify.sentinelsignal.io/v1/servers/ai.borealhost/mcp/trust-summary","claimed":false,"verified_publisher":false,"claim_status":"unclaimed","badge_url":"https://verify.sentinelsignal.io/badge/ai.borealhost/mcp.svg","report_url":"https://verify.sentinelsignal.io/v1/servers/ai.borealhost/mcp/report","policy_url":"https://verify.sentinelsignal.io/v1/servers/ai.borealhost/mcp/policy","evidence_url":"https://verify.sentinelsignal.io/api/v1/servers/ai.borealhost/mcp/evidence","commerce_signal":null,"payment_capable":null,"delegation_level":null,"risk_flags":[],"strengths":["report_available","policy_available","badge_available"],"limitations":["unclaimed_profile","publisher_not_verified"],"last_seen":null,"last_scored":"2026-09-09T03:59:49.812190+00:00","recommended_agent_action":"unknown","observed_attention":{"schema":"verify.observed_attention.v1","window_days":30,"level":"none","label":"No observed attention","summary":"No recent machine-readable trust or discovery activity observed for this server.","segments":{"useful_ai_user":{"level":"none","observed":false,"description":"AI-assisted user sessions such as ChatGPT/User or Claude/User."},"machine_trust_evaluator":{"level":"none","observed":false,"description":"Synthetic sessions inspecting multiple trust surfaces such as report, policy, ledger, badge, trust-summary, or compare."},"possible_agent_or_script":{"level":"none","observed":false,"description":"Structured direct sessions with rapid profile, compare, report, policy, badge, or trust-surface fan-out."},"isolated_machine_surface":{"level":"none","observed":false,"description":"Aged-out direct synthetic singleton sessions that touched a machine-readable trust surface without becoming a broader evaluator."},"ai_crawler":{"level":"none","observed":false,"description":"Known AI crawler activity such as ClaudeBot, GPTBot, or similar crawlers."},"search_crawler":{"level":"none","observed":false,"description":"Search and SEO crawler activity."},"browser_like_automation":{"level":"none","observed":false,"description":"Browser-like synthetic sessions with rapid structured endpoint activity."},"confirmed_human":{"level":"none","observed":false,"description":"Confirmed browser-session human activity."}},"surfaces_observed":{"server_profile":false,"compare":false,"compare_json":false,"compare_api":false,"report_json":false,"policy":false,"ledger":false,"badge_metadata":false,"badge_svg":false,"trust_summary":false,"mcp_tool":false},"claim_prompt":{"recommended":false,"reason":"No claim prompt is recommended from observed attention in the current window."},"notes":["Observed attention is based on segmented first-party telemetry.","Crawler and evaluator activity is not treated as confirmed human demand.","Public levels are bucketed to avoid exposing raw traffic counts."]},"owner_activation":{"claim_recommended":false,"reason":"no_observed_attention"}}],"servers":[{"namespace":"ai.borealhost","name":"mcp","title":"BorealHost","description":"Agent-native web hosting — deploy sites, manage DNS, register domains, scale infrastructure","homepage_url":"https://borealhost.ai","docs_url":null,"icon_url":null,"support_url":null,"remote_url":"https://borealhost.ai/mcp/","server_card_url":null,"latest_version":"0.4.2","current_status":"failing","current_score":null,"transport_type":"streamable-http","has_oauth":false,"has_dcr":false,"has_prompts":false,"tool_count":0,"current_validation_schema_version":"8058defc70ca932c","last_validated_at":"2026-09-09T03:59:49.812190+00:00","registry_source":"official_registry","registry_identifier":"ai.borealhost/mcp","canonical_identifier":null,"current_score_components":{"auth_operability_score":2.0,"error_contract_score":0.0,"rate_limit_semantics_score":2.0,"schema_completeness_score":0.0,"backward_compatibility_score":4.0,"slo_health_score":0.0,"security_hygiene_score":0.0,"task_success_score":0.0,"trust_confidence_score":1.0,"prompt_contract_score":0.0,"resource_contract_score":0.0,"discovery_metadata_score":2.0,"registry_consistency_score":2.0,"installability_score":1.0,"session_semantics_score":1.0,"tool_surface_design_score":0.0,"result_shape_stability_score":0.0,"oauth_interop_score":0.0,"recovery_semantics_score":0.0,"maintenance_signal_score":3.0,"adoption_signal_score":2.0,"freshness_confidence_score":1.0,"transport_fidelity_score":4.0,"spec_recency_score":2.0,"session_resume_score":4.0,"step_up_auth_score":0.0,"transport_compliance_score":3.0,"utility_coverage_score":0.0,"advanced_capability_coverage_score":0.0,"connector_publishability_score":0.0,"tool_snapshot_churn_score":0.0,"connector_replay_score":0.0,"request_association_score":0.0,"interactive_flow_safety_score":0.0,"official_registry_presence_score":4.0,"safety_transparency_score":2.0,"tool_capability_clarity_score":0.0,"data_exfiltration_resilience_score":0.0,"dependency_supply_chain_signal_score":1.0,"input_sanitization_safety_score":0.0,"tool_namespace_clarity_score":0.0},"capability_taxonomy":[],"machine_summary":{},"taxonomy_tags":[],"score_decomposition":[],"validation_diff":null,"tool_snapshot_diff":null,"connector_replay":{},"request_association":{},"production_readiness":{"code":"failing","label":"Failing","reason":"The latest validation run was attempted but did not complete successfully.","badge":"score-low"},"recommended_for":[],"history_summary":{},"validation_timeline":[],"evidence_confidence":{"score":null,"label":"not_assessed","reason":"No evidence-bearing validation runs exist yet (6 captured checks, validation age 11.1 hours). Confidence cannot be computed.","live_check_count":6,"validation_age_hours":11.12,"basis":{"evidence_bearing_validations":0,"affirmative_live_check_count":6,"validation_age_hours":11.12,"freshness_threshold_hours":24}},"incident_feed":[],"disputes":[],"remediations":[],"client_remediation_modes":[],"client_profiles":[],"client_readiness_verdicts":[],"publishability_policy_profiles":[],"compatibility_fixtures":[],"install_snippets":{},"aliases":[],"raw_evidence":{"checks":{"probe_noise_resilience":{"status":"ok","latency_ms":168.75,"details":{"url":"https://borealhost.ai/robots.txt","http_status":200,"headers":{"content-type":"text/plain","strict-transport-security":"max-age=31536000; includeSubDomains; preload"},"validation_disallowed":false,"consent_error":null}},"server_card":{"status":"error","latency_ms":280.18,"details":{"url":"https://borealhost.ai/.well-known/mcp/server-card.json","error":"Client error '404 Not Found' for url 'https://borealhost.ai/.well-known/mcp/server-card.json'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404"}},"oauth_protected_resource":{"status":"error","latency_ms":226.26,"details":{"url":"https://borealhost.ai/.well-known/oauth-protected-resource","error":"Client error '404 Not Found' for url 'https://borealhost.ai/.well-known/oauth-protected-resource'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/404"}},"oauth_authorization_server":{"status":"missing","latency_ms":null,"details":{"reason":"no_authorization_server"}},"openid_configuration":{"status":"missing","latency_ms":null,"details":{"reason":"no_authorization_server"}},"initialize":{"status":"ok","latency_ms":206.4,"details":{"url":"https://borealhost.ai/mcp/","payload":{"jsonrpc":"2.0","id":1,"result":{"protocolVersion":"2025-03-26","capabilities":{"experimental":{},"prompts":{"listChanged":false},"resources":{"subscribe":false,"listChanged":false},"tools":{"listChanged":false}},"serverInfo":{"name":"BorealHost","version":"1.27.0"},"instructions":"# BorealHost — Agent Instructions\n\nYou are connected to BorealHost.ai, an agent-native web hosting platform based in Quebec, Canada. All prices are in **CAD**. You can purchase hosting, deploy sites, manage DNS, register domains, and scale infrastructure — entirely through these tools, without human intervention.\n\n## Quick Start Workflow\n\n1. **Discover plans** — call `list_plans()` to see available hosting plans with pricing and resources\n2. **Create checkout** — call `create_checkout(sku)` with a SKU like `bh_site_starter_monthly`\n3. **Set buyer info** — call `update_checkout(checkout_id, requested_slug=\"my-site\")` to pick a site name\n4. **Pay** — call `complete_checkout(checkout_id)` and show the human `payment_url`\n5. **Poll provisioning** — call `get_checkout_status(checkout_id)` until status is `completed`\n6. **Manage your site** — use `get_site_status`, `manage_dns`, file tools, etc.\n\nPaying is what provisions the site. There is no step between 4 and 5, and\n`create_site` is not one — it reports, it does not create.\n\n## Authentication\n\n- **API key format:** `bh_<48 hex chars>` — pass as `Authorization: Bearer <key>`\n- **Session-based:** Call `set_api_key(\"bh_...\")` to activate an existing key for this session — all subsequent tools will use it automatically\n- **Auto-activation:** Keys are automatically activated when returned by `register()`, `complete_checkout()`, or `get_checkout_status()` — no extra step needed\n- **Environment variable:** Optionally set `BOREALHOST_API_KEY` before connecting (used as default if no session key is set)\n- **Scopes:** `read` (view data), `write` (modify resources), `admin` (delete/scale)\n- **One-time display:** API keys are shown **exactly once** on creation or rotation — store immediately\n- **New agents:** Call `register()` — no auth needed, returns a fresh read+write key and activates it\n- **Existing users:** Call `set_api_key()` with the owner's key from the BorealHost panel\n- **On-site agents (challenge-response):** If you are running on a BorealHost container and need an API key, use the two-step claim flow:\n  1. Call `request_api_key(\"your-site-slug\")` — a claim token is written to your container\n  2. Read the token file from the container filesystem\n  3. Call `claim_api_key(token)` — the API key is returned and auto-activated\n  This proves you have access to the container without storing secrets on disk.\n- Some tools require no authentication: `list_plans`, `create_checkout`, `update_checkout`, `complete_checkout`, `get_checkout_status`, `request_api_key`\n\n## SKU Format\n\nPlan SKUs follow the pattern: `bh_{plan_slug}_{billing_period}`\n\nExamples:\n- `bh_site_starter_monthly` / `bh_site_starter_annual`\n- `bh_site_pro_monthly` / `bh_site_pro_annual`\n- `bh_site_managed_monthly` / `bh_site_managed_annual`\n- `bh_site_business_monthly` / `bh_site_business_annual`\n\nCall `list_plans()` to discover all current plan slugs.\n\n## Payment Methods\n\nTwo options in `complete_checkout()`:\n\n1. **`stripe_checkout`** (default) — Returns `payment_url`, a short BorealHost redirect. Present **that** to the human, not `stripe_checkout_url`: chat UIs strip the `#fragment` the raw Stripe URL needs. After paying they land on a confirmation page showing the order. Then poll `get_checkout_status()` until status becomes `completed`. The API key is included in the first poll response after completion (shown once, then cleared — `api_key_pending` says whether it is still waiting).\n\n2. **`stripe_payment_method`** — Charges a Stripe PaymentMethod directly. Requires `payment_method_id` parameter. On success, the response includes the API key immediately. No polling needed.\n\n## Polling Strategy\n\nWhen waiting for checkout completion or provisioning:\n- **First 60 seconds:** Poll every **5 seconds**\n- **After 60 seconds:** Poll every **15 seconds**\n- **Timeout:** Stop after **10 minutes** — if still not completed, something went wrong\n\nTerminal checkout statuses: `completed`, `canceled`, `failed`\n\nImmediately after `completed`, `site` may still be `null` — provisioning runs a\nfew seconds behind payment. Keep polling until `site.status` is `active`.\n\nAbandoned attempts are yours to clean up: `list_checkouts()` shows your\naccount's checkouts, `cancel_checkout(id)` retires an unpaid one and expires its\npayment link.\n\n## Error Handling\n\nAll API responses use a consistent envelope:\n```json\n{\"ok\": true, \"data\": {...}, \"meta\": {\"request_id\": \"uuid\", \"timestamp\": \"iso8601\"}}\n{\"ok\": false, \"error\": {\"code\": \"ERROR_CODE\", \"message\": \"Human-readable message\"}, \"meta\": {...}}\n```\n\nTools unwrap this envelope — you receive the `data` directly on success, or an exception on error.\n\n### Error Codes and Recovery\n\n| Code | HTTP | Meaning | Recovery |\n|------|------|---------|----------|\n| `VALIDATION_ERROR` | 422 | Invalid input (bad email, slug, SKU, etc.) | Fix the input and retry |\n| `NOT_FOUND` | 404 | Resource doesn't exist | Check the identifier (slug, domain, key ID) |\n| `UNAUTHORIZED` | 401 | Missing or invalid API key | Set `BOREALHOST_API_KEY` or call `register()` |\n| `FORBIDDEN` | 403 | Insufficient scope or wrong owner | Check that your key has the required scope |\n| `RATE_LIMITED` | 429 | Too many requests | Wait for the duration in the `Retry-After` header, then retry |\n| `INTERNAL_ERROR` | 500 | Server error | Retry with exponential backoff (1s, 2s, 4s) up to 3 times |\n\n## Slug Rules\n\nSite slugs must match: `^[a-z0-9][a-z0-9-]{1,48}[a-z0-9]$`\n- 3–50 characters\n- Lowercase alphanumeric and hyphens only\n- Cannot start or end with a hyphen\n- Must be globally unique — if taken, try a different one\n\n## Best Practices\n\n- **Store API keys immediately** — they are shown only once and cannot be retrieved\n- **Create snapshots before destructive operations** — call `create_snapshot()` before scaling down or decommissioning\n- **Check site status after provisioning** — call `get_site_status()` to confirm the site is ready before managing it\n- **Use `whoami()` to verify your key** — confirms scopes, account info, and active site count\n- **Domain registration requires complete WHOIS contact info** — have all fields ready before calling `register_domain()`\n- **For .ca domains**, always provide `ca_legal_type` (CCT for corporation, CCO for citizen, RES for resident)\n\n## Available Resources\n\nRead these MCP resources for detailed reference data:\n- `borealhost://api/errors` — Full error code catalog with recovery guidance\n- `borealhost://api/scopes` — API key scope descriptions and tool requirements\n- `borealhost://api/enums` — All valid enum values (checkout status, DNS types, log types, etc.)\n- `borealhost://api/response-format` — API response envelope documentation\n- `borealhost://plans` — Live plan catalog with current pricing\n\n## Available Prompts\n\nUse these MCP prompts for guided workflows:\n- `purchase_hosting` — Step-by-step hosting purchase flow\n- `setup_site` — Post-purchase site configuration (DNS, modules)\n- `manage_dns` — Common DNS operations guide\n- `register_domain` — Domain registration with WHOIS field checklist\n"}},"http_status":200,"headers":{"content-type":"text/event-stream","mcp-session-id":"9e0ee89ced6d4596a953c40a587ebaec"}}},"protocol_version_probe":{"status":"warning","latency_ms":null,"details":{"claimed_version":"2025-03-26","validator_protocol_version":"2025-03-26","latest_known_version":"2025-11-25","releases_behind":2,"lag_days":244}},"tools_list":{"status":"error","latency_ms":79.48,"details":{"url":"https://borealhost.ai/mcp/","error":"Client error '400 Bad Request' for url 'https://borealhost.ai/mcp/'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400","http_status":400,"payload":{},"headers":{"content-type":"application/json","mcp-session-id":"11d39ed4ab0b4bd287dd9e89fc05e989"}}},"prompts_list":{"status":"missing","latency_ms":77.37,"details":{"url":"https://borealhost.ai/mcp/","error":"Client error '400 Bad Request' for url 'https://borealhost.ai/mcp/'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400","http_status":400,"payload":{},"headers":{"content-type":"application/json","mcp-session-id":"99bfe6ffcb2146189c10f025468c144c"},"reason":"not_advertised"}},"prompt_get":{"status":"missing","latency_ms":null,"details":{"reason":"not_advertised"}},"resources_list":{"status":"missing","latency_ms":85.23,"details":{"url":"https://borealhost.ai/mcp/","error":"Client error '400 Bad Request' for url 'https://borealhost.ai/mcp/'\nFor more information check: https://developer.mozilla.org/en-US/docs/Web/HTTP/Status/400","http_status":400,"payload":{},"headers":{"content-type":"application/json","mcp-session-id":"af96f00d64c74a24bf870b5fb93cf24e"},"reason":"not_advertised"}},"resource_read":{"status":"missing","latency_ms":null,"details":{"reason":"not_advertised"}},"determinism_probe":{"status":"missing","latency_ms":null,"details":{"reason":"tools_list_unavailable"}},"instruction_tool_reference_probe":{"status":"not_assessed","latency_ms":null,"details":{"reason":"initialize_or_tools_unavailable"}},"session_resume_probe":{"status":"ok","latency_ms":76.13,"details":{"url":"https://borealhost.ai/mcp/","payload":{"jsonrpc":"2.0","id":301,"result":{"tools":[{"name":"register","description":"Register a new agent account and get an API key.\n\nNo authentication needed. The returned API key grants read+write access\nto all BorealHost API endpoints. Store it securely — it cannot be\nretrieved again.\n\nThe key is automatically activated for this session — all subsequent\ntool calls will use it. No extra configuration needed.\n\nIf no email is provided, a synthetic agent identity is created\n(agent-{uuid}@api.borealhost.ai). If an email is provided, it links\nto an existing or new human account.\n\nArgs:\n    name: Human-readable name for this API key (default: \"Agent Key\")\n    email: Optional email to link to a human account\n\nReturns:\n    {\"api_key\": \"bh_...\", \"key_id\": \"uuid\", \"prefix\": \"bh_...\",\n     \"scopes\": [\"read\", \"write\"], \"account_id\": \"uuid\",\n     \"message\": \"Store this API key securely...\"}\n\nErrors:\n    RATE_LIMITED: Max 5 registrations per IP per hour\n    VALIDATION_ERROR: Invalid email format\n","inputSchema":{"properties":{"name":{"default":"Agent Key","title":"Name","type":"string"},"email":{"default":"","title":"Email","type":"string"}},"title":"registerArguments","type":"object"}},{"name":"set_api_key","description":"Set your BorealHost API key for this session.\n\nCall this if you already have an API key (from a previous registration,\ncheckout completion, or the BorealHost panel). All subsequent tool calls\nwill use this key for authentication.\n\nNo need to call this after register() — the key is set automatically.\n\nArgs:\n    api_key: Your BorealHost API key (format: bh_<48 hex chars>)\n\nReturns:\n    {\"success\": true, \"message\": \"API key set for this session\",\n     \"key_prefix\": \"bh_...\"}\n","inputSchema":{"properties":{"api_key":{"title":"Api Key","type":"string"}},"required":["api_key"],"title":"set_api_keyArguments","type":"object"}},{"name":"whoami","description":"Check the current API key's account info, scopes, and site count.\n\nRequires: BOREALHOST_API_KEY env var (read scope).\n\nReturns:\n    {\"user\": {\"id\": \"uuid\", \"email\": \"...\", \"date_joined\": \"iso8601\"},\n     \"api_key\": {\"id\": \"uuid\", \"name\": \"...\", \"prefix\": \"bh_...\",\n                 \"scopes\": [\"read\", \"write\"], \"created_at\": \"iso8601\"},\n     \"account\": {\"sites\": 2, \"active_subscriptions\": 1}}\n\nErrors:\n    UNAUTHORIZED: Missing or invalid API key\n","inputSchema":{"properties":{},"title":"whoamiArguments","type":"object"}},{"name":"request_api_key","description":"Request an API key for a site YOU ARE RUNNING ON (challenge-response).\n\n⚠ ONLY USE THIS IF YOU ARE EXECUTING INSIDE THAT SITE'S OWN CONTAINER. If\nyou bought or ordered the site from somewhere else, this is the wrong tool:\nit returns \"pending\" and the pending never resolves, because the proof it\nasks for is a file you cannot reach. Use `get_checkout_status(checkout_id)`\non the checkout that paid for the site — that hands over the site-scoped key\nover plain HTTP with no container access. The refusal and the pending\nresponse both name it under `alternative` when one is available.\n\nTwo-step verification flow:\n1. A claim token is written into that site's container, at the per-site path\n   the response gives you in `claim_path` (mode 600, owner admin — readable\n   only from on the container). Do not hardcode the path.\n2. Read that file and call claim_api_key(token) within 1 hour\n\nRefused for sites on SHARED containers. One container there serves up to 40\ncustomers behind one agent, so reading a file proves you are on the machine,\nnot which customer you are — the token would authenticate the wrong thing.\n\nNo authentication needed — the proof is reading the file from the container.\n\nArgs:\n    site_slug: The site identifier (your BorealHost site slug)\n\nReturns:\n    {\"status\": \"pending\", \"site_slug\": \"my-site\", \"expires_in_seconds\": 3600,\n     \"claim_path\": \"/home/admin/.borealhost/.claim_token_my-site\",\n     \"requires_container_access\": true,\n     \"instructions\": \"Read the claim token and call claim_api_key()...\",\n     \"alternative\": {\"checkout_id\": \"...\", \"command\": \"bh checkout status ...\"}}\n\nErrors:\n    VALIDATION_ERROR: Unknown site slug, no active subscription, shared\n        container, or a key already exists (rotate it, never revoke it to\n        reach this route). Carries `alternative` when another route works.\n    RATE_LIMITED: Too many pending claim tokens\n","inputSchema":{"properties":{"site_slug":{"title":"Site Slug","type":"string"}},"required":["site_slug"],"title":"request_api_keyArguments","type":"object"}},{"name":"claim_api_key","description":"Claim an API key using a claim token from the container.\n\nAfter calling request_api_key(), read the claim token from the path that\ncall returned in `claim_path`, on that site's container, and pass it here.\n\nThe token is single-use — once claimed, it cannot be used again.\nThe API key is automatically activated for this MCP session.\n\nArgs:\n    claim_token: The claim token string read from the container file\n\nReturns:\n    {\"api_key\": \"bh_...\", \"key_prefix\": \"bh_...\",\n     \"site_slug\": \"my-site\", \"scopes\": [\"read\", \"write\"],\n     \"message\": \"API key created and activated...\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid, expired, or already-claimed token\n","inputSchema":{"properties":{"claim_token":{"title":"Claim Token","type":"string"}},"required":["claim_token"],"title":"claim_api_keyArguments","type":"object"}},{"name":"list_plans","description":"List available hosting plans with pricing and resources.\n\nNo authentication needed.\n\nArgs:\n    track: Filter by plan track. Valid values: \"single_site\", \"agency\".\n        ⚠ The track is not the site count — most plans on BOTH tracks\n        include several sites (site_starter 5, site_plus 8, site_pro 12).\n        Read `max_sites` on the plan, and use add_site() to fill a slot.\n           Leave empty to list all tracks.\n    include_deprecated: Include deprecated plans (default: false)\n\nReturns:\n    [{\"slug\": \"site_starter\", \"name\": \"Starter\", \"track\": \"single_site\",\n      \"hosting_type\": \"shared\", \"price\": {\"monthly\": 5, \"annual\": 2, \"currency\": \"CAD\"},\n      \"resources\": null, \"features\": {\"max_sites\": 1, \"ai_modules\": [...],\n      \"ai_agents\": [], \"free_domain_annual\": false}}, ...]\n","inputSchema":{"properties":{"track":{"default":"","title":"Track","type":"string"},"include_deprecated":{"default":false,"title":"Include Deprecated","type":"boolean"}},"title":"list_plansArguments","type":"object"}},{"name":"create_checkout","description":"Start a new checkout session to purchase a hosting plan.\n\nNo authentication needed. After creating, call update_checkout to set\nbuyer info, then complete_checkout to pay.\n\nThe response carries a `checkout_secret`, returned ONCE, that every later\nstep of this checkout requires. It is held in memory for this MCP session\nand sent automatically — but it is gone if the server restarts. If a session\nkey is set, the checkout is owned by that account and the API key authorizes\nthe later steps on its own, which is the durable path.\n\nArgs:\n    sku: Plan SKU in format bh_{plan_slug}_{monthly|annual}.\n         Examples: \"bh_site_starter_monthly\", \"bh_site_pro_annual\",\n         \"bh_site_managed_monthly\", \"bh_site_business_annual\".\n         Call list_plans() to discover all available plan slugs.\n\nReturns:\n    {\"id\": \"uuid\", \"sku\": \"bh_site_starter_monthly\",\n     \"plan_slug\": \"site_starter\", \"billing_period\": \"monthly\",\n     \"status\": \"not_ready\", \"buyer_email\": \"\", \"requested_slug\": \"\",\n     \"created_at\": \"iso8601\", \"checkout_secret\": \"base64-token\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid SKU format or unknown plan\n    RATE_LIMITED: Max 10 checkouts per IP per hour\n","inputSchema":{"properties":{"sku":{"title":"Sku","type":"string"}},"required":["sku"],"title":"create_checkoutArguments","type":"object"}},{"name":"update_checkout","description":"Set buyer email and desired site slug on a checkout session.\n\nThe checkout must be in \"not_ready\" status. Setting requested_slug\ntransitions status to \"ready\" (required before completing).\n\nArgs:\n    checkout_id: Checkout session ID from create_checkout\n    buyer_email: Optional email — if omitted, a synthetic agent identity\n                 (agent-{uuid}@api.borealhost.ai) is created at completion\n    requested_slug: Desired site identifier. Must be 3-50 chars, lowercase\n                    alphanumeric + hyphens, cannot start/end with hyphen.\n                    Must be globally unique.\n    site_type: What the docroot should serve — wordpress (default), php,\n        php-nodb or static-site. ⚠ Set it HERE: the checkout locks once\n        buyer info is set, so choosing later means provisioning a\n        WordPress you then convert away from, abandoning its tree in the\n        docroot and paying a minute of provisioning for nothing.\n\nReturns:\n    {\"id\": \"uuid\", \"sku\": \"...\", \"plan_slug\": \"...\",\n     \"billing_period\": \"monthly\", \"status\": \"ready\",\n     \"buyer_email\": \"...\", \"requested_slug\": \"my-site\",\n     \"created_at\": \"iso8601\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid slug format or slug already taken\n    FORBIDDEN: Missing checkout_secret\n    NOT_FOUND: Unknown checkout_id\n","inputSchema":{"properties":{"checkout_id":{"title":"Checkout Id","type":"string"},"buyer_email":{"default":"","title":"Buyer Email","type":"string"},"requested_slug":{"default":"","title":"Requested Slug","type":"string"},"site_type":{"default":"","title":"Site Type","type":"string"}},"required":["checkout_id"],"title":"update_checkoutArguments","type":"object"}},{"name":"complete_checkout","description":"Complete checkout with payment and start site provisioning.\n\nThe checkout must be in \"ready\" status.\n\nTwo payment methods:\n- \"stripe_checkout\" (default): Returns a short, chat-safe payment URL.\n  **Present `payment_url` to the human — NOT `stripe_checkout_url`.**\n  The raw Stripe URL has a required `#fragment` that chat UIs routinely\n  strip when rendering markdown links, which causes Stripe to show\n  \"page not found\". `payment_url` is a short BorealHost redirect that\n  preserves the fragment via HTTP 302. After paying, the human lands on a\n  confirmation page (`confirmation_url`) — not on raw JSON. Then poll\n  get_checkout_status() until status becomes \"completed\". The API key\n  appears in the first poll after payment (shown once, then cleared).\n  Payment provisions the site; nothing else has to be called to create it.\n- \"stripe_payment_method\": Charges a Stripe PaymentMethod directly.\n  Requires payment_method_id. On success, returns the API key immediately.\n\nArgs:\n    checkout_id: Checkout session ID\n    payment_method: \"stripe_checkout\" (returns a payment_url for a human),\n        \"stripe_payment_method\" (card on file), or \"wallet\" — pay from the\n        account's prepaid balance against THIS key's allowance. Check\n        get_wallet() first: `spendable_cents` is what you may actually\n        spend, and a wallet payment is refused for plans that order\n        dedicated hardware, which are authorised against a verified card\n        payment instead.\n    payment_method_id: Stripe PaymentMethod ID (pm_...). Required only\n                       for \"stripe_payment_method\".\n\nReturns (stripe_checkout):\n    {\"id\": \"uuid\", \"status\": \"awaiting_payment\",\n     \"payment_url\": \"https://borealhost.ai/pay/<id>/?s=<secret>\",\n     \"confirmation_url\": \"https://borealhost.ai/pay/<id>/confirmation/?s=...\",\n     \"stripe_checkout_url\": \"https://checkout.stripe.com/c/pay/...\",\n     \"message\": \"Present payment_url to the human...\"}\n\nReturns (stripe_payment_method):\n    {\"id\": \"uuid\", \"status\": \"completed\", \"api_key\": \"bh_...\",\n     \"api_key_message\": \"Store this API key securely...\",\n     \"subscription_id\": \"uuid\", \"provisioning_job_id\": \"uuid\"}\n\nErrors:\n    VALIDATION_ERROR: Missing payment_method_id for stripe_payment_method\n    FORBIDDEN: Checkout not in \"ready\" status\n","inputSchema":{"properties":{"checkout_id":{"title":"Checkout Id","type":"string"},"payment_method":{"default":"stripe_checkout","title":"Payment Method","type":"string"},"payment_method_id":{"default":"","title":"Payment Method Id","type":"string"}},"required":["checkout_id"],"title":"complete_checkoutArguments","type":"object"}},{"name":"get_checkout_status","description":"Poll a checkout session for status updates.\n\nCall this after complete_checkout to track payment and provisioning.\n\nPolling strategy:\n- First 60 seconds: every 5 seconds\n- After 60 seconds: every 15 seconds\n- Stop after 10 minutes if not completed\n\nCheckout statuses (in order):\n- \"not_ready\": Missing required fields (slug)\n- \"ready\": All fields set, awaiting payment\n- \"awaiting_payment\": Stripe checkout page opened, waiting for human\n- \"in_progress\": Payment received, site being provisioned\n- \"completed\": Site ready — API key included (shown once, then cleared)\n- \"canceled\": Checkout was abandoned\n- \"failed\": Payment or provisioning failed\n\nTerminal statuses: \"completed\", \"canceled\", \"failed\".\n\nArgs:\n    checkout_id: Checkout session ID\n\nReturns (when completed):\n    {\"id\": \"uuid\", \"status\": \"completed\", \"api_key\": \"bh_...\",\n     \"api_key_message\": \"Store this API key securely...\",\n     \"api_key_pending\": false,\n     \"subscription_id\": \"uuid\", \"subscription_status\": \"active\",\n     \"site\": {\"slug\": \"my-site\", \"status\": \"active\",\n              \"url\": \"https://my-site.borealhost.ai\"},\n     \"completed_at\": \"iso8601\"}\n\nImmediately after payment `site` may be null with a `provisioning_message`\n— the site is being built. Poll again in a few seconds.\n\nNote: The api_key field appears ONCE in the first poll after completion,\nthen is permanently cleared. `api_key_pending` tells you whether it is still\nwaiting to be collected. Store it immediately.\n","inputSchema":{"properties":{"checkout_id":{"title":"Checkout Id","type":"string"}},"required":["checkout_id"],"title":"get_checkout_statusArguments","type":"object"}},{"name":"list_checkouts","description":"List checkouts belonging to the authenticated account.\n\nRequires: API key. Only checkouts with a recorded owner appear — every\ncheckout created while authenticated, plus every checkout that reached\npayment. An anonymous checkout whose one-shot secret was lost cannot be\nlisted; create checkouts authenticated to keep them addressable.\n\nArgs:\n    status: Optional filter — \"not_ready\", \"ready\", \"awaiting_payment\",\n            \"completed\", \"canceled\", \"failed\".\n\nReturns:\n    {\"checkouts\": [{...same shape as get_checkout_status...}], \"note\": \"...\"}\n","inputSchema":{"properties":{"status":{"default":"","title":"Status","type":"string"}},"title":"list_checkoutsArguments","type":"object"}},{"name":"cancel_checkout","description":"Abandon an unpaid checkout and expire its Stripe payment link.\n\nUse this to clean up abandoned attempts rather than leaving them to sit.\nA completed checkout is never cancelled here — that would be a refund, and\nit is refused.\n\nArgs:\n    checkout_id: Checkout session ID\n\nReturns:\n    The checkout, with status \"canceled\".\n\nErrors:\n    VALIDATION_ERROR: Checkout was already paid — cancel the subscription\n                      from the panel instead\n    FORBIDDEN: Missing checkout_secret and no owning API key\n","inputSchema":{"properties":{"checkout_id":{"title":"Checkout Id","type":"string"}},"required":["checkout_id"],"title":"cancel_checkoutArguments","type":"object"}},{"name":"add_site","description":"Provision a site into a slot a plan you ALREADY PAY FOR includes.\n\nTwo different things can be meant by \"create a site\". Buying one is the\ncheckout flow (create_checkout → update → complete). This is the other: most\nplans include several sites, and this uses one of them at no extra cost.\nsite_starter includes 5, site_plus 8, site_pro 12, and the agency plans\nmore. `whoami` and `list_sites` show what the account already holds.\n\n⚠ Prefer this over buying a second subscription when a slot is free. Sites\nunder ONE subscription share one CPU pool, one disk quota and one\nrate-limit bucket — that shared budget is what the plan sells. Two\nsubscriptions split it, so the customer pays twice for capacity they had.\n\nRequires: API key with write scope, on the account that owns the plan.\n\nArgs:\n    slug: Sub-domain for the new site (lowercase, digits, hyphens)\n    subscription_id: The subscription whose slot to use\n    client_name: Display name for the site (optional)\n    domain: Custom domain; defaults to <slug>.borealhost.ai\n    site_type: wordpress (default) | php | php-nodb | static-site. Choose\n        here rather than provisioning WordPress and calling set_site_type\n        afterwards — that installs a WordPress you then abandon in the\n        docroot, and it costs a minute of provisioning.\n\nReturns:\n    {\"subscription_id\": \"uuid\", \"provisioning_job_id\": \"uuid\",\n     \"slug\": \"my-second-site\", \"domain\": \"my-second-site.borealhost.ai\",\n     \"status\": \"provisioning\"}\n    Poll get_site_status(slug) until it reports active.\n\nErrors:\n    VALIDATION_ERROR: Plan includes a single site, slug taken, or every\n                      slot is in use (the message reports used/total)\n    NOT_FOUND: Unknown subscription, or it belongs to another account\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"subscription_id":{"title":"Subscription Id","type":"string"},"client_name":{"default":"","title":"Client Name","type":"string"},"domain":{"default":"","title":"Domain","type":"string"},"site_type":{"default":"","title":"Site Type","type":"string"}},"required":["slug","subscription_id"],"title":"add_siteArguments","type":"object"}},{"name":"set_site_type","description":"Change what a site's docroot IS, without deleting anything.\n\nTypes:\n  wordpress    WordPress, PHP and a database (the default)\n  php          PHP and a database, no WordPress\n  php-nodb     PHP, no database\n  static-site  HTML/CSS/JS only, no PHP and no database\n\n⚠ NON-DESTRUCTIVE. Existing files stay on disk and existing databases are\nnot dropped. They remain the customer's data and keep counting against\ntheir plan's quota — this changes how the site is SERVED, not what it\nholds. Converting back later finds everything where it was.\n\n⚠ Moving to a type without PHP does not merely stop executing .php — it\nstops serving them. The vhost returns 404 for php/phtml, because falling\nthrough to the static handler would return the file's SOURCE, and a\ndocroot converted from WordPress still contains wp-config.php with the\ndatabase password in it.\n\nShared hosting only. On a VPS the whole container is the customer's and\nthey reconfigure it with the tools inside it.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    site_type: One of the four values above\n\nReturns:\n    {\"from\": \"wordpress\", \"to\": \"static-site\", \"database_created\": false,\n     \"placeholder_seeded\": false, \"pool_removed\": true}\n    `placeholder_seeded` is true only when the docroot was EMPTY — an\n    existing site's content is never overwritten.\n\nErrors:\n    VALIDATION_ERROR: Unknown type, or the site is not on shared hosting\n    NOT_FOUND: Unknown slug or not reachable by this account\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"site_type":{"title":"Site Type","type":"string"}},"required":["slug","site_type"],"title":"set_site_typeArguments","type":"object"}},{"name":"get_wallet","description":"The account's prepaid balance, and what THIS key may spend from it.\n\nTwo ceilings, and both apply: the balance bounds the ACCOUNT, the allowance\nbounds this KEY within it. Plan against `spendable_cents`, which is the\nlower of the two — a $50 balance behind a $5 allowance means $5, and\nplanning against the balance is planning a purchase that gets refused.\n\n`can_spend: false` with a non-zero balance is normal and means this key has\nno budget allocated. That is not a bug: a key with no allowance may not\nspend the account's money, which is the whole reason allowances exist. Ask\nthe human to allocate one in the panel (Compte → Clés API).\n\nRead-only. Money goes in through a human — an agent able to top up its own\nbudget does not have one.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"currency\": \"CAD\", \"balance_cents\": 5000, \"spendable_cents\": 500,\n     \"can_spend\": true,\n     \"key_allowance\": {\"limit_cents\": 2000, \"spent_cents\": 1500,\n                       \"remaining_cents\": 500}}\n\nTo spend it: complete_checkout(..., payment_method=\"wallet\").\n","inputSchema":{"properties":{},"title":"get_walletArguments","type":"object"}},{"name":"get_site_status","description":"Get detailed status of a hosted site including resources, domains, and modules.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier (the slug chosen during checkout)\n\nReturns:\n    {\"slug\": \"my-site\", \"plan\": \"site_starter\", \"status\": \"active\",\n     \"domains\": [\"my-site.borealhost.ai\"], \"modules\": {...},\n     \"resources\": {\"memory_mb\": 512, \"cpu_cores\": 1, \"disk_gb\": 10},\n     \"created_at\": \"iso8601\"}\n\nErrors:\n    NOT_FOUND: Unknown slug or not owned by this account\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_site_statusArguments","type":"object"}},{"name":"manage_dns","description":"Create or delete DNS records for a site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    action: \"create\" or \"delete\"\n    record_type: \"A\", \"AAAA\", \"CNAME\", \"MX\", \"TXT\", or \"SRV\"\n    subdomain: Subdomain part (e.g. \"www\", \"mail\"). Leave empty for\n               the apex/root domain.\n    value: Record value. Required for \"create\". Examples:\n           A: \"1.2.3.4\", CNAME: \"example.com\", MX: \"mail.example.com\",\n           TXT: \"v=spf1 include:_spf.google.com ~all\"\n    ttl: Time to live in seconds (default: 3600)\n\nReturns:\n    {\"success\": true, \"record\": {\"type\": \"A\", \"subdomain\": \"www\",\n     \"value\": \"1.2.3.4\", \"ttl\": 3600}}\n\nErrors:\n    VALIDATION_ERROR: Missing value for create, invalid record type\n    NOT_FOUND: Unknown slug\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"action":{"title":"Action","type":"string"},"record_type":{"title":"Record Type","type":"string"},"subdomain":{"default":"","title":"Subdomain","type":"string"},"value":{"default":"","title":"Value","type":"string"},"ttl":{"default":3600,"title":"Ttl","type":"integer"}},"required":["slug","action","record_type"],"title":"manage_dnsArguments","type":"object"}},{"name":"install_app","description":"Install an app template on a VPS/Cloud site.\n\nStarts a background installation. Poll get_app_status() for progress.\n\nRequires: API key with write scope. VPS or Cloud plan only.\n\nArgs:\n    slug: Site identifier\n    template: App template slug. Available: django, laravel, nextjs, nodejs,\n              nuxtjs, rails, static\n    app_name: Short name for the app (2-50 chars, lowercase alphanumeric + hyphens).\n              Used as subdomain: {app_name}.{site_domain}\n    db_type: Database type. \"none\", \"mysql\", or \"postgresql\" (depends on template)\n    domain: Custom domain override (default: {app_name}.{site_domain})\n    display_name: Human-friendly name (default: derived from app_name)\n\nReturns:\n    {\"id\": \"uuid\", \"app_name\": \"myapp\", \"status\": \"installing\",\n     \"message\": \"Installation started. Poll for progress.\"}\n\nErrors:\n    FORBIDDEN: Plan does not support apps (shared plans)\n    VALIDATION_ERROR: Invalid template, app_name, or duplicate name\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"template":{"title":"Template","type":"string"},"app_name":{"title":"App Name","type":"string"},"db_type":{"default":"none","title":"Db Type","type":"string"},"domain":{"default":"","title":"Domain","type":"string"},"display_name":{"default":"","title":"Display Name","type":"string"}},"required":["slug","template","app_name"],"title":"install_appArguments","type":"object"}},{"name":"get_app_status","description":"Get app installation status and log.\n\nPoll this after install_app() to track progress.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    app_id: App ID from install_app() response\n\nReturns:\n    {\"id\": \"uuid\", \"app_name\": \"myapp\", \"status\": \"running\"|\"installing\"|\"failed\",\n     \"install_log\": \"...\"}\n\nStatuses: \"installing\", \"running\", \"stopped\", \"failed\", \"uninstalled\"\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"app_id":{"title":"App Id","type":"string"}},"required":["slug","app_id"],"title":"get_app_statusArguments","type":"object"}},{"name":"list_apps","description":"List installed apps on a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"apps\": [{\"id\": \"uuid\", \"app_name\": \"myapp\", \"template_slug\": \"django\",\n     \"status\": \"running\", \"domain\": \"myapp.mysite.borealhost.ai\"}]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_appsArguments","type":"object"}},{"name":"list_snapshots","description":"List all snapshots and scheduled snapshots for a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"snapshots\": [{\"id\": \"uuid\", \"name\": \"snap-...\", \"status\": \"completed\",\n     \"storage_type\": \"local\"|\"b2\", \"size_bytes\": 1234, \"size_display\": \"1.2 Mo\",\n     \"created_at\": \"iso8601\"}], \"scheduled\": [...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_snapshotsArguments","type":"object"}},{"name":"create_snapshot","description":"Create a local container snapshot (async).\n\nRuns in background — returns immediately with status \"creating\".\nPoll list_snapshots() to check when status becomes \"completed\" or \"failed\".\n\nAvailable for VPS, dedicated, and cloud plans (any plan with max_snapshots > 0).\nLocal snapshots are stored on the host disk and count against disk quota.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    description: Optional description (max 200 chars)\n\nReturns:\n    {\"id\": \"uuid\", \"name\": \"snap-...\", \"status\": \"creating\",\n     \"storage_type\": \"local\",\n     \"message\": \"Snapshot started. Poll list_snapshots() to check status.\"}\n\nErrors:\n    VALIDATION_ERROR: Max snapshots reached or insufficient disk quota\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"description":{"default":"","title":"Description","type":"string"}},"required":["slug"],"title":"create_snapshotArguments","type":"object"}},{"name":"create_b2_snapshot","description":"Create a B2 cloud-backed snapshot (zero local disk, async).\n\nStreams container data directly to Backblaze B2 via restic.\nNo local disk impact — billed separately at cost+5%.\nRuns in background — returns immediately with status \"creating\".\nPoll list_snapshots() to check when status becomes \"completed\".\nOnly available for VPS plans.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    description: Optional description (max 200 chars)\n\nReturns:\n    {\"id\": \"uuid\", \"name\": \"...\", \"status\": \"creating\",\n     \"storage_type\": \"b2\",\n     \"message\": \"B2 cloud snapshot started. Poll list_snapshots()...\"}\n\nErrors:\n    VALIDATION_ERROR: Not a VPS plan or max snapshots reached\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"description":{"default":"","title":"Description","type":"string"}},"required":["slug"],"title":"create_b2_snapshotArguments","type":"object"}},{"name":"delete_snapshot","description":"Delete a snapshot (local or B2).\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    snapshot_id: UUID of the snapshot to delete\n\nReturns:\n    {\"success\": true, \"message\": \"Snapshot deleted\"}\n\nErrors:\n    NOT_FOUND: Snapshot not found\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"snapshot_id":{"title":"Snapshot Id","type":"string"}},"required":["slug","snapshot_id"],"title":"delete_snapshotArguments","type":"object"}},{"name":"rollback_snapshot","description":"Rollback a site to a previous snapshot.\n\nWARNING: This is destructive. The current state of the container will be\nreplaced with the snapshot contents.\n\nRequires: API key with admin scope.\n\nArgs:\n    slug: Site identifier\n    snapshot_id: UUID of the snapshot to rollback to\n\nReturns:\n    {\"success\": true, \"message\": \"Rolled back to snapshot ...\"}\n\nErrors:\n    NOT_FOUND: Snapshot not found or not in completed state\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"snapshot_id":{"title":"Snapshot Id","type":"string"}},"required":["slug","snapshot_id"],"title":"rollback_snapshotArguments","type":"object"}},{"name":"get_snapshot_usage","description":"Get snapshot disk usage and quota info for a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"disk_quota_gb\": 200, \"max_snapshots\": 5, \"snapshot_count\": 2,\n     \"local_snapshot_bytes\": 1234, \"b2_snapshot_bytes\": 5678,\n     \"can_create\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_snapshot_usageArguments","type":"object"}},{"name":"schedule_snapshot","description":"Schedule a snapshot for future execution.\n\nRequires: API key with write scope. Max 3 pending schedules per site.\n\nArgs:\n    slug: Site identifier\n    scheduled_at: ISO 8601 datetime (must be in the future)\n    description: Optional description (max 200 chars)\n\nReturns:\n    {\"id\": \"uuid\", \"scheduled_at\": \"iso8601\", \"status\": \"scheduled\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid datetime, not in future, or too many pending\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"scheduled_at":{"title":"Scheduled At","type":"string"},"description":{"default":"","title":"Description","type":"string"}},"required":["slug","scheduled_at"],"title":"schedule_snapshotArguments","type":"object"}},{"name":"cancel_scheduled_snapshot","description":"Cancel a scheduled snapshot.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    schedule_id: UUID of the scheduled snapshot to cancel\n\nReturns:\n    {\"success\": true, \"message\": \"Scheduled snapshot cancelled\"}\n\nErrors:\n    NOT_FOUND: Schedule not found or already executed\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"schedule_id":{"title":"Schedule Id","type":"string"}},"required":["slug","schedule_id"],"title":"cancel_scheduled_snapshotArguments","type":"object"}},{"name":"list_backups","description":"List all backups for a site (automatic and manual).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    [{\"id\": \"uuid\", \"backup_type\": \"auto\"|\"manual\", \"status\": \"completed\",\n     \"size_bytes\": 1234, \"size_display\": \"1.2 Mo\",\n     \"timestamp\": \"iso8601\", \"notes\": \"...\"}]\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_backupsArguments","type":"object"}},{"name":"create_backup","description":"Create a manual backup (runs asynchronously).\n\nThe backup starts in the background. Poll list_backups() to check status.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"id\": \"uuid\", \"status\": \"pending\",\n     \"message\": \"Backup started. Poll list_backups() to check status.\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"create_backupArguments","type":"object"}},{"name":"restore_backup","description":"Restore a site from a backup.\n\nWARNING: This is destructive. The current state of the site will be\nreplaced. Runs asynchronously — may take several minutes.\n\nRequires: API key with admin scope.\n\nArgs:\n    slug: Site identifier\n    backup_id: UUID of the backup to restore from\n\nReturns:\n    {\"success\": true, \"message\": \"Restore started...\"}\n\nErrors:\n    VALIDATION_ERROR: Backup not found or not in completed state\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"backup_id":{"title":"Backup Id","type":"string"}},"required":["slug","backup_id"],"title":"restore_backupArguments","type":"object"}},{"name":"get_metrics","description":"Get traffic and performance metrics for a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    days: Number of days of history (1–90, default: 7)\n\nReturns:\n    {\"requests\": [...], \"bandwidth\": [...], \"errors\": [...],\n     \"period\": {\"start\": \"iso8601\", \"end\": \"iso8601\"}}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    VALIDATION_ERROR: days out of range\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"days":{"default":7,"title":"Days","type":"integer"}},"required":["slug"],"title":"get_metricsArguments","type":"object"}},{"name":"scale","description":"Change a site's hosting plan (upgrade or downgrade).\n\nRequires: API key with admin scope. Best practice: create a snapshot\nbefore downgrading.\n\nArgs:\n    slug: Site identifier\n    new_plan: Target plan slug (e.g. \"site_pro\", \"site_managed\").\n              Call list_plans() to see available plans.\n\nReturns:\n    {\"success\": true, \"old_plan\": \"site_starter\", \"new_plan\": \"site_pro\",\n     \"message\": \"Plan changed successfully\"}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    VALIDATION_ERROR: Invalid plan slug or same plan\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"new_plan":{"title":"New Plan","type":"string"}},"required":["slug","new_plan"],"title":"scaleArguments","type":"object"}},{"name":"decommission","description":"Delete a site and schedule resource cleanup (7-day grace period).\n\nWARNING: This is destructive. The site will be inaccessible immediately\nbut data is retained for 7 days before permanent deletion.\n\nBest practice: create a snapshot before decommissioning.\n\nRequires: API key with admin scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"success\": true, \"message\": \"Site scheduled for deletion\",\n     \"grace_period_days\": 7}\n\nErrors:\n    NOT_FOUND: Unknown slug\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"decommissionArguments","type":"object"}},{"name":"update_account","description":"Update account profile fields (email, language, name).\n\nRequires: API key with write scope.\nOnly provided (non-empty) fields are updated.\n\nArgs:\n    email: New email address\n    language: Language preference — \"fr\" (French) or \"en\" (English)\n    first_name: First name\n    last_name: Last name\n\nReturns:\n    {\"success\": true, \"account\": {\"email\": \"...\", \"language\": \"fr\",\n     \"first_name\": \"...\", \"last_name\": \"...\"}}\n\nErrors:\n    VALIDATION_ERROR: Invalid email format or language code\n","inputSchema":{"properties":{"email":{"default":"","title":"Email","type":"string"},"language":{"default":"","title":"Language","type":"string"},"first_name":{"default":"","title":"First Name","type":"string"},"last_name":{"default":"","title":"Last Name","type":"string"}},"title":"update_accountArguments","type":"object"}},{"name":"delete_account","description":"Permanently anonymize the account. Cancels subscriptions, deactivates keys.\n\nWARNING: This is irreversible. The account will be soft-deleted and all\npersonal data anonymized. All sites will be decommissioned.\n\nRequires: API key with admin scope.\n\nReturns:\n    {\"success\": true, \"message\": \"Account anonymized\"}\n","inputSchema":{"properties":{},"title":"delete_accountArguments","type":"object"}},{"name":"list_subscriptions","description":"List all subscriptions with plan details, pricing, status, and site slug.\n\nRequires: API key with read scope.\n\nReturns:\n    [{\"id\": \"uuid\", \"plan_slug\": \"site_starter\", \"plan_name\": \"Starter\",\n      \"status\": \"active\", \"billing_period\": \"monthly\",\n      \"price\": {\"amount\": 500, \"currency\": \"cad\"},\n      \"site_slug\": \"my-site\", \"created_at\": \"iso8601\"}]\n","inputSchema":{"properties":{},"title":"list_subscriptionsArguments","type":"object"}},{"name":"get_billing_portal","description":"Get a Stripe billing portal URL for managing payment methods and invoices.\n\nReturns a URL (not a redirect) that the human can open in a browser.\n\nRequires: API key with read scope.\n\nArgs:\n    flow: Optional. Set to \"payment_method_update\" to go directly\n          to the payment method update page.\n\nReturns:\n    {\"url\": \"https://billing.stripe.com/p/session/...\"}\n","inputSchema":{"properties":{"flow":{"default":"","title":"Flow","type":"string"}},"title":"get_billing_portalArguments","type":"object"}},{"name":"rotate_key","description":"Atomically rotate an API key. Old key is immediately invalidated.\n\nCreates a new key with the same name, scopes, and rate limits.\nThe new key is returned once — store it immediately.\n\nRequires: API key with write scope.\n\nArgs:\n    key_id: UUID of the API key to rotate (get from whoami())\n\nReturns:\n    {\"api_key\": \"bh_...\", \"key_id\": \"uuid\", \"prefix\": \"bh_...\",\n     \"scopes\": [\"read\", \"write\"], \"message\": \"Key rotated. Store securely.\"}\n\nNote: The old key stops working immediately. Update BOREALHOST_API_KEY\nright away.\n","inputSchema":{"properties":{"key_id":{"title":"Key Id","type":"string"}},"required":["key_id"],"title":"rotate_keyArguments","type":"object"}},{"name":"create_api_key","description":"Create a new API key with specified scopes.\n\nCannot create keys with higher scopes than the current key.\nSite-scoped keys restrict access to a single site.\n\nRequires: API key with write scope.\n\nArgs:\n    name: Human-readable name for the key (1-100 chars)\n    scopes: Comma-separated scopes. Options: \"read\", \"read,write\",\n            \"read,write,admin\". Default: \"read\"\n    site_slug: Optional — restrict the key to a single site.\n               Omit for account-wide access.\n\nReturns:\n    {\"api_key\": \"bh_...\", \"key_id\": \"uuid\", \"prefix\": \"bh_...\",\n     \"name\": \"My Key\", \"scopes\": [\"read\", \"write\"],\n     \"message\": \"Store this API key securely — it will not be shown again.\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid name, scopes, or max 25 active keys\n    FORBIDDEN: Cannot create keys with higher scopes than current key\n","inputSchema":{"properties":{"name":{"title":"Name","type":"string"},"scopes":{"default":"read","title":"Scopes","type":"string"},"site_slug":{"default":"","title":"Site Slug","type":"string"}},"required":["name"],"title":"create_api_keyArguments","type":"object"}},{"name":"list_api_keys","description":"List all API keys for the account.\n\nShows key metadata (name, prefix, scopes, last used) but never the\nfull key value.\n\nRequires: API key with read scope.\n\nReturns:\n    [{\"id\": \"uuid\", \"name\": \"My Key\", \"prefix\": \"bh_a2...\",\n      \"scopes\": [\"read\", \"write\"], \"is_active\": true,\n      \"created_at\": \"iso8601\", \"last_used_at\": \"iso8601\"|null,\n      \"site_slug\": null|\"my-site\"}]\n","inputSchema":{"properties":{},"title":"list_api_keysArguments","type":"object"}},{"name":"revoke_api_key","description":"Revoke (deactivate) an API key. The key stops working immediately.\n\nRequires: API key with write scope.\n\nArgs:\n    key_id: UUID of the key to revoke (from list_api_keys or whoami)\n\nReturns:\n    {\"success\": true, \"message\": \"API key revoked\"}\n\nErrors:\n    NOT_FOUND: Key not found or already revoked\n","inputSchema":{"properties":{"key_id":{"title":"Key Id","type":"string"}},"required":["key_id"],"title":"revoke_api_keyArguments","type":"object"}},{"name":"get_ssh_info","description":"Get SSH connection info for a VPS/dedicated site.\n\nOnly available for VPS/dedicated plans (not shared hosting).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"host\": \"184.107.x.x\", \"port\": 22, \"username\": \"admin\",\n     \"ssh_command\": \"ssh admin@184.107.x.x\"}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    FORBIDDEN: Plan does not support SSH (shared plans)\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_ssh_infoArguments","type":"object"}},{"name":"add_ssh_key","description":"Inject your SSH public key into a site's container for direct SSH access.\n\nThe key is appended to /home/admin/.ssh/authorized_keys.\nOnly available for VPS/dedicated plans.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    public_key: SSH public key string. Supported types:\n                ssh-ed25519, ssh-rsa, ecdsa-sha2-nistp256/384/521\n\nReturns:\n    {\"success\": true, \"message\": \"SSH key added\",\n     \"ssh_command\": \"ssh admin@184.107.x.x\"}\n\nErrors:\n    VALIDATION_ERROR: Invalid or unsupported key format\n    FORBIDDEN: Plan does not support SSH\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"public_key":{"title":"Public Key","type":"string"}},"required":["slug","public_key"],"title":"add_ssh_keyArguments","type":"object"}},{"name":"list_files","description":"List files and directories in a site's container.\n\nPath scoping depends on the plan:\n- Shared plans: rooted at wp-content/ (WordPress content directory)\n- VPS/dedicated plans: full filesystem access\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path to list (empty for root of accessible area)\n\nReturns:\n    {\"path\": \"/\", \"entries\": [{\"name\": \"index.php\", \"type\": \"file\",\n     \"size\": 1234, \"modified\": \"iso8601\"}, {\"name\": \"uploads\",\n     \"type\": \"directory\", \"modified\": \"iso8601\"}]}\n\nErrors:\n    NOT_FOUND: Unknown slug or path doesn't exist\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"default":"","title":"Path","type":"string"}},"required":["slug"],"title":"list_filesArguments","type":"object"}},{"name":"read_file","description":"Read the contents of a file from a site's container.\n\nMax file size: 512KB. Binary files are rejected — use the site's\nfile manager or SSH for binary files.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path to the file\n\nReturns:\n    {\"path\": \"wp-config.php\", \"content\": \"<?php ...\",\n     \"size\": 1234, \"encoding\": \"utf-8\"}\n\nErrors:\n    NOT_FOUND: File doesn't exist\n    VALIDATION_ERROR: File is binary or exceeds 512KB\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"title":"Path","type":"string"}},"required":["slug","path"],"title":"read_fileArguments","type":"object"}},{"name":"write_file","description":"Write or overwrite a text file in a site's container.\n\nCreates parent directories if they don't exist.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path to the file\n    content: File content as a UTF-8 string\n\nReturns:\n    {\"success\": true, \"path\": \"...\", \"size\": 1234}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    FORBIDDEN: Protected system path\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"title":"Path","type":"string"},"content":{"title":"Content","type":"string"}},"required":["slug","path","content"],"title":"write_fileArguments","type":"object"}},{"name":"upload_file","description":"Upload a base64-encoded file to a site's container.\n\nUse this for binary files (images, archives, fonts, etc.).\nFor text files, prefer write_file().\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path including filename (e.g. \"images/logo.png\")\n    content_b64: Base64-encoded file content\n\nReturns:\n    {\"success\": true, \"path\": \"images/logo.png\", \"size\": 45678}\n\nErrors:\n    VALIDATION_ERROR: Invalid base64 encoding\n    FORBIDDEN: Protected system path\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"title":"Path","type":"string"},"content_b64":{"title":"Content B64","type":"string"}},"required":["slug","path","content_b64"],"title":"upload_fileArguments","type":"object"}},{"name":"delete_file","description":"Delete a file or directory from a site's container.\n\nDirectories are deleted recursively. Protected system paths\n(e.g. /etc, /usr) cannot be deleted.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path to delete\n\nReturns:\n    {\"success\": true, \"path\": \"...\", \"message\": \"Deleted\"}\n\nErrors:\n    NOT_FOUND: Path doesn't exist\n    FORBIDDEN: Protected system path\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"title":"Path","type":"string"}},"required":["slug","path"],"title":"delete_fileArguments","type":"object"}},{"name":"create_directory","description":"Create a directory in a site's container.\n\nCreates parent directories if they don't exist.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    path: Relative path of the directory to create\n\nReturns:\n    {\"success\": true, \"path\": \"uploads/2024\", \"message\": \"Directory created\"}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    FORBIDDEN: Protected system path\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"title":"Path","type":"string"}},"required":["slug","path"],"title":"create_directoryArguments","type":"object"}},{"name":"list_plugins","description":"List installed WordPress plugins with status.\n\nRequires: API key with read scope. WordPress sites only.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"plugins\": [{\"name\": \"akismet\", \"status\": \"active\", \"version\": \"5.3\",\n     \"update_available\": false}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_pluginsArguments","type":"object"}},{"name":"list_themes","description":"List installed WordPress themes with status.\n\nRequires: API key with read scope. WordPress sites only.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"themes\": [{\"name\": \"twentytwentyfour\", \"status\": \"active\",\n     \"version\": \"1.0\", \"update_available\": false}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_themesArguments","type":"object"}},{"name":"manage_plugin","description":"Install, activate, deactivate, or delete a WordPress plugin.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    action: \"install\", \"activate\", \"deactivate\", or \"delete\"\n    plugin: Plugin slug (e.g. \"akismet\", \"jetpack\", \"woocommerce\")\n\nReturns:\n    {\"action\": \"install\", \"plugin\": \"jetpack\", \"result\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"action":{"title":"Action","type":"string"},"plugin":{"title":"Plugin","type":"string"}},"required":["slug","action","plugin"],"title":"manage_pluginArguments","type":"object"}},{"name":"manage_theme","description":"Install, activate, or delete a WordPress theme.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    action: \"install\", \"activate\", or \"delete\"\n    theme: Theme slug (e.g. \"twentytwentyfour\", \"astra\")\n\nReturns:\n    {\"action\": \"install\", \"theme\": \"astra\", \"result\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"action":{"title":"Action","type":"string"},"theme":{"title":"Theme","type":"string"}},"required":["slug","action","theme"],"title":"manage_themeArguments","type":"object"}},{"name":"wp_check_updates","description":"Check for available WordPress core, plugin, and theme updates.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"core\": {\"current\": \"6.5\", \"update\": \"6.6\"},\n     \"plugins\": [{\"name\": \"...\", \"current\": \"1.0\", \"new\": \"1.1\"}],\n     \"themes\": [...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"wp_check_updatesArguments","type":"object"}},{"name":"wp_update_all","description":"Update WordPress core, all plugins, and all themes.\n\nRuns all updates in sequence. May take up to 2 minutes.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"core\": {...}, \"plugins\": [...], \"themes\": [...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"wp_update_allArguments","type":"object"}},{"name":"list_cron","description":"List cron jobs on a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"jobs\": [{\"line\": 1, \"schedule\": \"*/5 * * * *\",\n     \"command\": \"/usr/bin/php /var/www/html/wp-cron.php\"}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_cronArguments","type":"object"}},{"name":"add_cron","description":"Add a cron job to a site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    schedule: Cron schedule (e.g. \"*/5 * * * *\", \"0 2 * * *\")\n    command: Command to execute\n\nReturns:\n    {\"added\": true, \"result\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"schedule":{"title":"Schedule","type":"string"},"command":{"title":"Command","type":"string"}},"required":["slug","schedule","command"],"title":"add_cronArguments","type":"object"}},{"name":"delete_cron","description":"Delete a cron job by line number.\n\nGet line numbers from list_cron().\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    line_number: Line number of the cron entry to delete\n\nReturns:\n    {\"deleted\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"line_number":{"title":"Line Number","type":"integer"}},"required":["slug","line_number"],"title":"delete_cronArguments","type":"object"}},{"name":"ssl_info","description":"Get SSL certificate information for a site.\n\nReturns certificate details, expiry date, and issuer.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"issuer\": \"Let's Encrypt\", \"domain\": \"example.com\",\n     \"expires_at\": \"iso8601\", \"days_remaining\": 60,\n     \"force_https\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"ssl_infoArguments","type":"object"}},{"name":"ssl_renew","description":"Force SSL certificate renewal via certbot.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"renewed\": true, \"expires_at\": \"iso8601\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"ssl_renewArguments","type":"object"}},{"name":"list_php_versions","description":"List available PHP versions and the currently active one.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"versions\": [{\"version\": \"8.1\", \"active\": false},\n     {\"version\": \"8.2\", \"active\": false},\n     {\"version\": \"8.3\", \"active\": true}]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_php_versionsArguments","type":"object"}},{"name":"switch_php","description":"Switch the active PHP version for a site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    version: Target PHP version (e.g. \"8.3\", \"8.2\", \"8.1\")\n\nReturns:\n    {\"version\": \"8.3\", \"result\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"version":{"title":"Version","type":"string"}},"required":["slug","version"],"title":"switch_phpArguments","type":"object"}},{"name":"cache_status","description":"Get cache status (Redis, WP object cache, hit rates).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"redis_running\": true, \"object_cache_enabled\": true,\n     \"hit_rate\": 0.95, \"memory_used_mb\": 12}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"cache_statusArguments","type":"object"}},{"name":"cache_flush","description":"Flush all caches (Redis + WP object cache).\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"flushed\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"cache_flushArguments","type":"object"}},{"name":"cache_toggle","description":"Enable or disable the WordPress object cache.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    enable: true to enable, false to disable\n\nReturns:\n    {\"enabled\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"enable":{"title":"Enable","type":"boolean"}},"required":["slug","enable"],"title":"cache_toggleArguments","type":"object"}},{"name":"get_database_info","description":"Get WordPress database information (size, tables, row counts).\n\nRequires: API key with read scope. WordPress sites only.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"database\": \"wp_mysite\", \"size_mb\": 45.2,\n     \"tables\": 12, \"total_rows\": 15432}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_database_infoArguments","type":"object"}},{"name":"optimize_database","description":"Optimize WordPress database tables (reduces bloat).\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"optimized\": true, \"tables_optimized\": 12}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"optimize_databaseArguments","type":"object"}},{"name":"database_search_replace","description":"Search and replace in WordPress database (e.g. URL migration).\n\nHandles serialized data safely. Use dry_run=true first to preview changes.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    old: String to search for (e.g. \"http://old-domain.com\")\n    new: Replacement string (e.g. \"https://new-domain.com\")\n    dry_run: Preview only without making changes (default: true)\n\nReturns:\n    {\"replacements\": 42, \"tables_affected\": 5, \"dry_run\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"old":{"title":"Old","type":"string"},"new":{"title":"New","type":"string"},"dry_run":{"default":true,"title":"Dry Run","type":"boolean"}},"required":["slug","old","new"],"title":"database_search_replaceArguments","type":"object"}},{"name":"list_databases","description":"List all databases on a site's container.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"databases\": [\"wordpress\", \"app_db\", ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_databasesArguments","type":"object"}},{"name":"list_tables","description":"List tables in a database.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    database: Database name\n\nReturns:\n    {\"tables\": [{\"name\": \"wp_posts\", \"rows\": 1234, \"size_mb\": 5.2}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"database":{"title":"Database","type":"string"}},"required":["slug","database"],"title":"list_tablesArguments","type":"object"}},{"name":"execute_query","description":"Execute a SQL query on a site's database.\n\nSupports SELECT, INSERT, UPDATE, DELETE, and DDL statements.\nResults are limited to 1000 rows for SELECT queries.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    database: Database name\n    query: SQL query string\n\nReturns:\n    {\"columns\": [\"id\", \"title\"], \"rows\": [[1, \"Hello\"], ...],\n     \"affected_rows\": 0, \"query_time_ms\": 12}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"database":{"title":"Database","type":"string"},"query":{"title":"Query","type":"string"}},"required":["slug","database","query"],"title":"execute_queryArguments","type":"object"}},{"name":"get_stack_info","description":"Get detailed system stack information (OS, PHP, DB, web server versions).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"os\": \"Debian 12\", \"kernel\": \"6.1.0\",\n     \"php\": \"8.3.4\", \"mysql\": \"10.11.6-MariaDB\",\n     \"nginx\": \"1.24.0\", \"wordpress\": \"6.5\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_stack_infoArguments","type":"object"}},{"name":"get_resource_snapshot","description":"Get current resource usage (CPU, memory, disk, load average).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"cpu_percent\": 12.5, \"memory_mb\": 384, \"memory_total_mb\": 512,\n     \"disk_used_gb\": 3.2, \"disk_total_gb\": 10,\n     \"load_1m\": 0.5, \"load_5m\": 0.3, \"load_15m\": 0.2}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_resource_snapshotArguments","type":"object"}},{"name":"cloudflare_proxy_status","description":"Get Cloudflare proxy (CDN) status for a site.\n\nShows whether traffic is routed through Cloudflare's CDN (orange cloud)\nor goes direct to origin (grey cloud / DNS-only).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"domain\": \"my-site.borealhost.ai\", \"has_record\": true,\n     \"proxied\": true, \"ip\": \"1.2.3.4\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"cloudflare_proxy_statusArguments","type":"object"}},{"name":"cloudflare_set_proxy","description":"Enable or disable Cloudflare CDN proxy for a site.\n\nWhen enabled (orange cloud): traffic goes through Cloudflare's CDN,\ngets caching, DDoS protection, and SSL termination at the edge.\nWhen disabled (grey cloud): traffic goes directly to origin server.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    proxied: true to enable CDN proxy, false to disable\n\nReturns:\n    {\"domain\": \"my-site.borealhost.ai\", \"proxied\": true, \"ip\": \"1.2.3.4\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"proxied":{"title":"Proxied","type":"boolean"}},"required":["slug","proxied"],"title":"cloudflare_set_proxyArguments","type":"object"}},{"name":"cloudflare_purge_cache","description":"Purge Cloudflare CDN cache for a site.\n\nWithout urls: purges all cached content for the site's subdomain.\nWith urls: purges only the specified URLs (max 30 per call).\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    urls: Optional list of specific URLs to purge\n          (e.g. [\"https://my-site.borealhost.ai/style.css\"])\n\nReturns:\n    {\"purged\": true, \"scope\": \"host\", \"domain\": \"my-site.borealhost.ai\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"urls":{"default":null,"items":{},"title":"Urls","type":"array"}},"required":["slug"],"title":"cloudflare_purge_cacheArguments","type":"object"}},{"name":"list_ftp_accounts","description":"List SFTP accounts on a site.\n\nAlso returns the host and port to connect to. Do not use the site's domain\nfor SFTP: it is Cloudflare-proxied and only carries HTTP(S).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"accounts\": [{\"username\": \"sftpuser\", \"home\": \"/wordpress\", \"uid\": 1001}],\n     \"configured\": true,\n     \"connection\": {\"host\": \"1.2.3.4\", \"port\": 9312, \"protocol\": \"SFTP\"}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_ftp_accountsArguments","type":"object"}},{"name":"create_ftp_account","description":"Create an SFTP account on a site.\n\nThe account is chrooted to /var/www and lands in home_dir. Password must be\nat least 8 characters. Username must be lowercase alphanumeric.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    username: SFTP username (lowercase, max 32 chars)\n    password: Password (min 8 chars)\n    home_dir: Landing directory inside /var/www. Leave empty to land at\n        /var/www itself, which lists every site directory.\n\nReturns:\n    {\"success\": true, \"username\": \"sftpuser\", \"home_dir\": \"/wordpress\",\n     \"protocol\": \"sftp\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"username":{"title":"Username","type":"string"},"password":{"title":"Password","type":"string"},"home_dir":{"default":"","title":"Home Dir","type":"string"}},"required":["slug","username","password"],"title":"create_ftp_accountArguments","type":"object"}},{"name":"remove_ftp_account","description":"Remove an SFTP account from a site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    username: SFTP username to remove\n\nReturns:\n    {\"removed\": true, \"username\": \"sftpuser\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"username":{"title":"Username","type":"string"}},"required":["slug","username"],"title":"remove_ftp_accountArguments","type":"object"}},{"name":"list_alert_rules","description":"List user-configurable alert rules for a site.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    [{\"id\": \"uuid\", \"metric\": \"disk\", \"operator\": \"gt\",\n      \"threshold\": 90, \"severity\": \"warning\", \"enabled\": true,\n      \"cooldown_minutes\": 30, \"notify_email\": true}]\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_alert_rulesArguments","type":"object"}},{"name":"create_alert_rule","description":"Create an alert rule to monitor CPU, memory, or disk usage.\n\nWhen the metric crosses the threshold, a notification is sent via\nemail and/or webhook. Max 10 rules per site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    metric: \"cpu\", \"memory\", or \"disk\" (percentage-based)\n    threshold: Threshold value 0-100 (e.g. 90 for 90%)\n    operator: \"gt\" (greater than) or \"lt\" (less than). Default: \"gt\"\n    severity: \"warning\" or \"critical\". Default: \"warning\"\n    cooldown_minutes: Min minutes between repeated alerts. Default: 30\n    notify_email: Send email notification. Default: true\n    notify_webhook: Optional webhook URL for POST notifications\n\nReturns:\n    {\"id\": \"uuid\", \"metric\": \"disk\", \"threshold\": 90, ...}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"metric":{"title":"Metric","type":"string"},"threshold":{"title":"Threshold","type":"number"},"operator":{"default":"gt","title":"Operator","type":"string"},"severity":{"default":"warning","title":"Severity","type":"string"},"cooldown_minutes":{"default":30,"title":"Cooldown Minutes","type":"integer"},"notify_email":{"default":true,"title":"Notify Email","type":"boolean"},"notify_webhook":{"default":"","title":"Notify Webhook","type":"string"}},"required":["slug","metric","threshold"],"title":"create_alert_ruleArguments","type":"object"}},{"name":"delete_alert_rule","description":"Delete an alert rule.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    rule_id: UUID of the alert rule to delete\n\nReturns:\n    {\"deleted\": true, \"id\": \"uuid\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"rule_id":{"title":"Rule Id","type":"string"}},"required":["slug","rule_id"],"title":"delete_alert_ruleArguments","type":"object"}},{"name":"run_malware_scan","description":"Run a ClamAV malware scan on a site's container.\n\nScans the web root (or specified path) for malware, viruses, and trojans.\nClamAV is installed automatically if not present. Excludes node_modules,\nvendor, .git, and cache directories.\n\nMay take up to 5 minutes for large sites.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    path: Directory to scan (default: /var/www/html)\n\nReturns:\n    {\"infected_files\": [{\"path\": \"/var/www/html/shell.php\", \"threat\": \"Php.Malware.Agent\"}],\n     \"scanned_count\": 1234, \"infected_count\": 1, \"scan_time_s\": 45.2}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"path":{"default":"","title":"Path","type":"string"}},"required":["slug"],"title":"run_malware_scanArguments","type":"object"}},{"name":"list_firewall_rules","description":"List IP allow/deny firewall rules for a site.\n\nRules are implemented as Nginx allow/deny directives per container.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"rules\": [{\"ip\": \"1.2.3.4\", \"action\": \"deny\"},\n     {\"ip\": \"10.0.0.0/8\", \"action\": \"allow\"}]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_firewall_rulesArguments","type":"object"}},{"name":"add_firewall_rule","description":"Add an IP firewall rule (allow or deny) and reload Nginx.\n\nSupports IPv4, IPv6, and CIDR notation. Max 100 rules per site.\nIf a rule already exists for the IP, the action is updated.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    ip: IP address or CIDR (e.g. \"1.2.3.4\", \"10.0.0.0/8\", \"2001:db8::/32\")\n    action: \"deny\" (block) or \"allow\" (whitelist). Default: \"deny\"\n\nReturns:\n    {\"added\": true, \"ip\": \"1.2.3.4\", \"action\": \"deny\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"ip":{"title":"Ip","type":"string"},"action":{"default":"deny","title":"Action","type":"string"}},"required":["slug","ip"],"title":"add_firewall_ruleArguments","type":"object"}},{"name":"remove_firewall_rule","description":"Remove an IP firewall rule and reload Nginx.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    ip: IP address or CIDR to remove (must match exactly)\n\nReturns:\n    {\"removed\": true, \"ip\": \"1.2.3.4\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"ip":{"title":"Ip","type":"string"}},"required":["slug","ip"],"title":"remove_firewall_ruleArguments","type":"object"}},{"name":"get_logs","description":"Retrieve container logs (error, access, or PHP).\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n    log_type: \"error\" (Nginx/Apache errors), \"access\" (HTTP request log),\n              or \"php\" (PHP-FPM errors, WordPress sites only)\n    lines: Number of lines to retrieve (1–500, default: 100)\n    search: Optional keyword filter — only lines containing this string\n\nReturns:\n    {\"log_type\": \"error\", \"lines\": [\"2024-01-15 ... error ...\", ...],\n     \"count\": 42, \"truncated\": false}\n\nErrors:\n    NOT_FOUND: Unknown slug\n    VALIDATION_ERROR: Invalid log_type or lines out of range\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"log_type":{"default":"error","title":"Log Type","type":"string"},"lines":{"default":100,"title":"Lines","type":"integer"},"search":{"default":"","title":"Search","type":"string"}},"required":["slug"],"title":"get_logsArguments","type":"object"}},{"name":"list_domains","description":"List all domains owned by the authenticated user.\n\nRequires: API key with read scope.\n\nReturns:\n    [{\"domain\": \"example.com\", \"status\": \"active\",\n      \"expires_at\": \"iso8601\", \"auto_renew\": true,\n      \"linked_site\": \"my-site\"}]\n","inputSchema":{"properties":{},"title":"list_domainsArguments","type":"object"}},{"name":"search_domain","description":"Check domain availability and get pricing.\n\nRequires: API key with read scope.\n\nArgs:\n    domain: Full domain name (e.g. \"example.com\", \"mybiz.ca\")\n\nReturns:\n    {\"domain\": \"example.com\", \"available\": true,\n     \"price\": {\"amount\": 15.99, \"currency\": \"CAD\", \"period\": \"1 year\"},\n     \"premium\": false}\n\nNote: .ca domains require ca_legal_type when registering.\n","inputSchema":{"properties":{"domain":{"title":"Domain","type":"string"}},"required":["domain"],"title":"search_domainArguments","type":"object"}},{"name":"register_domain","description":"Register a new domain with WHOIS contact info and Stripe billing.\n\nThe domain cost is charged to the user's active subscription.\nFree domain if plan includes free_domain_annual + annual billing + first domain.\n\nRequires: API key with write scope.\n\nArgs:\n    domain: Full domain name (e.g. \"example.ca\", \"mybusiness.com\")\n    first_name: Registrant first name\n    last_name: Registrant last name\n    email: Registrant email address\n    phone: Phone number in E.164 format: \"+1.5145551234\"\n    address1: Street address (e.g. \"123 Rue Principale\")\n    city: City (e.g. \"Montreal\")\n    state: Province/state code (e.g. \"QC\", \"ON\", \"BC\")\n    postal_code: Postal/ZIP code (e.g. \"H2X 1Y4\")\n    country: ISO 3166-1 alpha-2 country code (default: \"CA\")\n    period: Registration period in years (1–10, default: 1)\n    usage_mode: What the domain points at.\n                \"site\" (default) links it to the billing subscription's\n                site with automatic DNS + Nginx + SSL.\n                \"external_ns\" delegates it to `nameservers` — the domain is\n                registered here but hosted elsewhere; we manage no DNS.\n                \"dns_only\" keeps it on our DNS with no site behind it.\n                \"forward\" redirects visitors to `forward_url`.\n    nameservers: Ordered list of 2–6 nameserver hostnames. Required when\n                 usage_mode=\"external_ns\" (e.g. [\"ns1.other.com\", \"ns2.other.com\"])\n    forward_url: Redirect target, required when usage_mode=\"forward\"\n                 (e.g. \"https://example.org\")\n    forward_type: \"301\" permanent (default) or \"302\" temporary\n    forward_include_path: Append the visitor's path to the target (default: True)\n    ca_legal_type: Required for .ca domains. CIRA legal types:\n                   \"CCO\" (Canadian citizen), \"RES\" (permanent resident),\n                   \"CCT\" (corporation), \"GOV\" (government), \"EDU\" (education),\n                   \"ASS\" (association), \"HOP\" (hospital), \"PRT\" (partnership),\n                   \"TDM\" (trademark), \"TRD\" (trade union), \"PLT\" (political party),\n                   \"LAM\" (library/archive/museum), \"MAJ\" (Her Majesty),\n                   \"INB\" (Indian band), \"ABO\" (Aboriginal peoples),\n                   \"LGR\" (legal representative)\n\nReturns:\n    {\"domain\": \"example.ca\", \"status\": \"registered\",\n     \"expires_at\": \"iso8601\", \"message\": \"Domain registered successfully\"}\n\nErrors:\n    VALIDATION_ERROR: Missing required fields, invalid phone format,\n                      missing ca_legal_type for .ca domains\n    NOT_FOUND: Domain not available (already registered by someone else)\n","inputSchema":{"properties":{"domain":{"title":"Domain","type":"string"},"first_name":{"title":"First Name","type":"string"},"last_name":{"title":"Last Name","type":"string"},"email":{"title":"Email","type":"string"},"phone":{"title":"Phone","type":"string"},"address1":{"title":"Address1","type":"string"},"city":{"title":"City","type":"string"},"state":{"title":"State","type":"string"},"postal_code":{"title":"Postal Code","type":"string"},"country":{"default":"CA","title":"Country","type":"string"},"period":{"default":1,"title":"Period","type":"integer"},"ca_legal_type":{"default":"","title":"Ca Legal Type","type":"string"},"usage_mode":{"default":"site","title":"Usage Mode","type":"string"},"nameservers":{"default":null,"items":{},"title":"Nameservers","type":"array"},"forward_url":{"default":"","title":"Forward Url","type":"string"},"forward_type":{"default":"301","title":"Forward Type","type":"string"},"forward_include_path":{"default":true,"title":"Forward Include Path","type":"boolean"}},"required":["domain","first_name","last_name","email","phone","address1","city","state","postal_code"],"title":"register_domainArguments","type":"object"}},{"name":"domain_detail","description":"Get full domain details including DNS and infrastructure status.\n\nRequires: API key with read scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n\nReturns:\n    {\"domain\": \"example.com\", \"status\": \"active\",\n     \"expires_at\": \"iso8601\", \"auto_renew\": true,\n     \"nameservers\": [\"ns1.borealhost.ai\", \"ns2.borealhost.ai\"],\n     \"dns_records\": [...], \"linked_site\": \"my-site\"}\n\nErrors:\n    NOT_FOUND: Domain not owned by this account\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"domain_detailArguments","type":"object"}},{"name":"list_subdomains","description":"List subdomain DNS records for a domain you own.\n\nRequires: API key with read scope.\n\nArgs:\n    domain_name: Registrable domain (e.g. \"example.com\")\n\nReturns:\n    [{\"fqdn\": \"blog.example.com\", \"subdomain\": \"blog\",\n      \"record_type\": \"A\", \"value\": \"1.2.3.4\", \"is_auto\": true}, ...]\n\nErrors:\n    NOT_FOUND: Domain not found\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"list_subdomainsArguments","type":"object"}},{"name":"add_subdomain","description":"Create and route a subdomain of a site-linked domain.\n\nCreates the DNS A record (if absent) pointing at the site's server,\nthen configures the nginx vhost and SSL certificate on that server.\nThe domain must already be linked to a site (see link_domain).\n\nIdempotent: if the DNS record already exists and points at the site's\nserver, the nginx/SSL steps are (re)applied — safe to re-call, e.g. to\nretry SSL after DNS propagation. May take up to 3 minutes when a\ncertificate is issued.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Registrable domain linked to a site (e.g. \"example.com\")\n    subdomain: Subdomain label only, no dots (e.g. \"blog\")\n\nReturns:\n    {\"fqdn\": \"blog.example.com\", \"domain\": \"example.com\",\n     \"site\": \"my-site\", \"message\": \"...\"}\n\nErrors:\n    NOT_FOUND: Domain not found\n    VALIDATION_ERROR: Domain not linked to a site, invalid label, or\n        an existing record points at a different server\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"subdomain":{"title":"Subdomain","type":"string"}},"required":["domain_name","subdomain"],"title":"add_subdomainArguments","type":"object"}},{"name":"delete_subdomain","description":"Remove a subdomain: its DNS record, nginx vhost and certificate.\n\nThe inverse of add_subdomain. Removes the DNS record AND the server-side\nvhost and cert, so the name stops resolving and stops being served. Nothing\nelse on the domain is touched.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Registrable domain linked to a site (e.g. \"example.com\")\n    subdomain: Subdomain label only, no dots (e.g. \"blog\")\n\nReturns:\n    {\"fqdn\": \"blog.example.com\", \"domain\": \"example.com\",\n     \"removed\": [\"dns\", \"vhost\", \"cert\"], \"message\": \"...\"}\n\nErrors:\n    NOT_FOUND: Domain or subdomain not found\n    VALIDATION_ERROR: Domain not linked to a site, or invalid label\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"subdomain":{"title":"Subdomain","type":"string"}},"required":["domain_name","subdomain"],"title":"delete_subdomainArguments","type":"object"}},{"name":"link_domain","description":"Link a domain to a hosted site.\n\nAttaches the domain to the specified site and triggers automatic\nDNS configuration and SSL provisioning.\n\nWARNING: Regenerates this site's nginx vhost on the host from scratch. Any config applied to that vhost by hand is lost, silently — the site keeps serving and only the hand-added behaviour disappears. Config set via the nginx-snippet endpoint is NOT affected: it lives in a separate file the regenerated vhost re-includes, which is what that endpoint is for.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    site_slug: Site identifier to link the domain to\n\nReturns:\n    {\"success\": true, \"domain\": \"example.com\",\n     \"linked_site\": \"my-site\", \"message\": \"Domain linked\"}\n\nErrors:\n    NOT_FOUND: Domain or site not found\n    VALIDATION_ERROR: Domain already linked to another site\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"site_slug":{"title":"Site Slug","type":"string"}},"required":["domain_name","site_slug"],"title":"link_domainArguments","type":"object"}},{"name":"get_site_nginx_snippet","description":"Read the custom nginx config for a domain on the BorealHost host proxy.\n\nYour site sits behind a BorealHost reverse proxy that terminates TLS and\nforwards to your container. This returns the custom nginx block applied to\nthat proxy for this domain (empty if you have not set one).\n\nRequires: API key with read scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n\nReturns:\n    {\"domain\": \"example.com\", \"content\": \"location ...\", \"exists\": true}\n\nErrors:\n    NOT_FOUND: Domain not found\n    VALIDATION_ERROR: Domain is not linked to a site\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"get_site_nginx_snippetArguments","type":"object"}},{"name":"set_site_nginx_snippet","description":"Set custom nginx config on the BorealHost host proxy — WebSocket, timeouts, headers.\n\nUse this when configuring your container's own nginx is not enough because\nsomething in front of it is interfering. The host proxy sits between the\ninternet and your container, and by default its catch-all `location /` does\nnot do anything special per-site.\n\nWEBSOCKETS: if your WebSocket endpoint returns 400 through your domain but\nupgrades correctly (101) when tested inside your container, the Upgrade\nheader is being dropped in front of you. Add a location block that relays it:\n\n    location ^~ /your/ws/path/ {\n        proxy_pass <your site's existing upstream>;\n        proxy_http_version 1.1;\n        proxy_set_header Upgrade $http_upgrade;\n        proxy_set_header Connection \"upgrade\";\n        proxy_read_timeout 3600;\n        proxy_send_timeout 3600;\n        error_page 502 503 504 =502;\n    }\n\nWhen testing with curl, force HTTP/1.1 (curl --http1.1). A WebSocket handshake uses the Upgrade header, which is invalid in HTTP/2 —\ncurl negotiates h2 with a CDN by default and the edge answers 400, which looks exactly like the bug you are trying to fix.\n\nThis config lives OUTSIDE the generated vhost, so it survives domain\nre-linking, autoconfig, plan changes and reprovisioning. Sending \"\" clears it.\n\nBounds — the file is parsed by a root process on a machine shared with\nBorealHost infrastructure, so only per-site proxy directives are accepted:\nlocation, proxy_pass, proxy_set_header, proxy_http_version, proxy_*_timeout,\nproxy_buffering, client_max_body_size, add_header, error_page, expires, gzip.\n`root`, `alias`, `include`, `access_log`, `error_log`, `server` and `upstream`\nare refused, and proxy_pass must target your own site's existing upstream.\nA rejection names the directive and why.\n\nThe config is validated with `nginx -t` before it is applied and rolled back\nautomatically if it does not pass, so a mistake cannot take your site down.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    content: nginx config, or \"\" to clear it\n\nReturns:\n    {\"domain\": \"example.com\", \"bytes\": 214, \"replaced\": false}\n\nErrors:\n    NOT_FOUND: Domain not found\n    VALIDATION_ERROR: Domain not linked to a site, a directive is not\n        permitted, proxy_pass targets something other than your own\n        upstream, or nginx rejected the config (the message says which)\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"content":{"title":"Content","type":"string"}},"required":["domain_name","content"],"title":"set_site_nginx_snippetArguments","type":"object"}},{"name":"set_domain_usage","description":"Set what a registered domain points at — a site, someone else's\nnameservers, our DNS with no site, or a redirect to another URL.\n\nUse this to park a domain, hand it to an external host, or forward it.\nSwitching modes tears down the previous one (a forwarded domain that\nbecomes a site domain loses its redirect, and vice versa).\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    usage_mode: \"site\" — link it to a hosted site (needs site_slug);\n                \"external_ns\" — delegate to the customer's own nameservers\n                (needs nameservers), we stop managing its DNS entirely;\n                \"dns_only\" — our nameservers, records edited by hand,\n                nothing served;\n                \"forward\" — our nameservers plus an HTTP redirect to\n                forward_url (needs forward_url)\n    site_slug: Site to link to, when usage_mode=\"site\"\n    nameservers: Ordered list of 2–6 nameserver hostnames, when\n                 usage_mode=\"external_ns\"\n    forward_url: Redirect target, when usage_mode=\"forward\"\n    forward_type: \"301\" permanent (default) or \"302\" temporary\n    forward_include_path: Append the visitor's path to the target (default: True)\n\nReturns:\n    {\"domain\": \"example.com\", \"usage_mode\": \"forward\",\n     \"forward_url\": \"https://example.org\",\n     \"configuration\": {\"dns\": true, \"nginx\": true, \"ssl\": false, ...}}\n\n    For forward mode, ssl=false usually just means DNS has not propagated\n    yet — call this tool again a few minutes later to finish the cert.\n\nErrors:\n    NOT_FOUND: Domain or site not found\n    VALIDATION_ERROR: Bad nameserver hostname, bad redirect URL,\n                      missing site_slug, or a self-referential redirect\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"usage_mode":{"title":"Usage Mode","type":"string"},"site_slug":{"default":"","title":"Site Slug","type":"string"},"nameservers":{"default":null,"items":{},"title":"Nameservers","type":"array"},"forward_url":{"default":"","title":"Forward Url","type":"string"},"forward_type":{"default":"301","title":"Forward Type","type":"string"},"forward_include_path":{"default":true,"title":"Forward Include Path","type":"boolean"}},"required":["domain_name","usage_mode"],"title":"set_domain_usageArguments","type":"object"}},{"name":"domain_settings","description":"Update domain settings (auto-renew, WHOIS privacy, registrar lock).\n\nOnly provided (non-None) fields are updated.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    auto_renew: Enable/disable automatic renewal\n    whois_privacy: Enable/disable WHOIS privacy protection\n    locked: Enable/disable registrar lock (prevents unauthorized transfers)\n\nReturns:\n    {\"success\": true, \"domain\": \"example.com\",\n     \"auto_renew\": true, \"whois_privacy\": true, \"locked\": true}\n\nErrors:\n    NOT_FOUND: Domain not found or not owned by account\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"auto_renew":{"default":null,"title":"Auto Renew","type":"boolean"},"whois_privacy":{"default":null,"title":"Whois Privacy","type":"boolean"},"locked":{"default":null,"title":"Locked","type":"boolean"}},"required":["domain_name"],"title":"domain_settingsArguments","type":"object"}},{"name":"list_domain_dns","description":"List all DNS records for a domain.\n\nReturns DNS records at the domain level (independent of site-level\nmanage_dns). Use this for domains that may not be linked to a site.\n\nRequires: API key with read scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n\nReturns:\n    [{\"id\": \"record-id\", \"type\": \"A\", \"subdomain\": \"www\",\n      \"value\": \"1.2.3.4\", \"ttl\": 3600}]\n\nErrors:\n    NOT_FOUND: Domain not found or not owned by account\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"list_domain_dnsArguments","type":"object"}},{"name":"add_domain_dns","description":"Add a DNS record to a domain.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    record_type: \"A\", \"AAAA\", \"CNAME\", \"MX\", \"TXT\", or \"SRV\"\n    value: Record value (e.g. \"1.2.3.4\" for A, \"mail.example.com\" for MX)\n    subdomain: Subdomain part (e.g. \"www\", \"mail\"). Empty for apex domain.\n    ttl: Time to live in seconds (default: 3600)\n    priority: MX priority (required for MX records)\n\nReturns:\n    {\"success\": true, \"record\": {\"id\": \"...\", \"type\": \"A\",\n     \"subdomain\": \"www\", \"value\": \"1.2.3.4\", \"ttl\": 3600}}\n\nErrors:\n    VALIDATION_ERROR: Missing value, invalid record type\n    NOT_FOUND: Domain not found\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"record_type":{"title":"Record Type","type":"string"},"value":{"title":"Value","type":"string"},"subdomain":{"default":"","title":"Subdomain","type":"string"},"ttl":{"default":3600,"title":"Ttl","type":"integer"},"priority":{"default":null,"title":"Priority","type":"integer"}},"required":["domain_name","record_type","value"],"title":"add_domain_dnsArguments","type":"object"}},{"name":"delete_domain_dns","description":"Delete a DNS record from a domain.\n\nRequires: API key with write scope.\n\nArgs:\n    domain_name: Full domain name (e.g. \"example.com\")\n    record_id: ID of the DNS record to delete (from list_domain_dns)\n\nReturns:\n    {\"success\": true, \"message\": \"DNS record deleted\"}\n\nErrors:\n    NOT_FOUND: Domain or record not found\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"},"record_id":{"title":"Record Id","type":"string"}},"required":["domain_name","record_id"],"title":"delete_domain_dnsArguments","type":"object"}},{"name":"list_modules","description":"List AI modules and their enabled/disabled state for a site.\n\nAlso returns the list of modules available for the site's plan.\n\nRequires: API key with read scope.\n\nArgs:\n    slug: Site identifier\n\nReturns:\n    {\"modules\": {\"chatbot\": true, \"seo\": false, \"translation\": false,\n     \"content\": false}, \"available\": [\"chatbot\", \"seo\", \"translation\", \"content\"]}\n\nErrors:\n    NOT_FOUND: Unknown slug\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_modulesArguments","type":"object"}},{"name":"toggle_module","description":"Enable or disable an AI module on a site.\n\nThe module must be in the plan's available module list.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    module_name: Module to toggle. Available modules:\n                 \"chatbot\" (AI chat widget), \"seo\" (SEO optimization),\n                 \"translation\" (content translation), \"content\" (AI content generation)\n\nReturns:\n    {\"module\": \"chatbot\", \"enabled\": true, \"message\": \"Module enabled\"}\n\nErrors:\n    NOT_FOUND: Unknown slug or module not in plan\n    VALIDATION_ERROR: Invalid module name\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"module_name":{"title":"Module Name","type":"string"}},"required":["slug","module_name"],"title":"toggle_moduleArguments","type":"object"}},{"name":"list_compute_types","description":"List on-demand compute instance types with hourly CAD prices.\n\nOn-demand instances are real cloud VMs in Canada (Montreal region),\nbilled per minute (1-hour minimum) post-paid onto your existing\nBorealHost subscription. Use them for short-lived extra compute\n(builds, batch jobs, experiments).\n\nRequires: API key with read scope.\n\nReturns:\n    {\"region\": \"ca-central-1\", \"currency\": \"CAD\",\n     \"billing\": \"hourly, post-paid; billing runs until the instance is terminated\",\n     \"types\": [{\"type\": \"lsw.c3.large\", \"vcpu\": 2, \"memory_gb\": 3,\n                \"hourly_price_cad\": 0.08, \"min_disk_gb\": 5,\n                \"storage_types\": [\"CENTRAL\", \"LOCAL\"]}, ...]}\n","inputSchema":{"properties":{},"title":"list_compute_typesArguments","type":"object"}},{"name":"list_compute_images","description":"List OS images available for on-demand compute instances.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"images\": [{\"id\": \"UBUNTU_24_04_64BIT\", \"name\": \"Ubuntu 24.04 LTS (x86_64)\",\n                 \"family\": \"linux\", \"flavour\": \"ubuntu\"}, ...]}\n","inputSchema":{"properties":{},"title":"list_compute_imagesArguments","type":"object"}},{"name":"launch_compute_instance","description":"Launch an on-demand hourly compute instance (Canada, CAD).\n\nBilling starts at launch (per minute, 1-hour minimum) and runs until\nterminate_compute_instance — stopping does NOT stop the charge. Every\ninstance has a hard TTL\n(max_lifetime_hours, default 72h) after which it is auto-terminated.\nUsage is metered onto your existing BorealHost subscription; an active\nsubscription is required.\n\nRequires: API key with write scope.\n\nArgs:\n    instance_type: From list_compute_types, e.g. \"lsw.c3.large\"\n    image_id: From list_compute_images, e.g. \"UBUNTU_24_04_64BIT\"\n    name: Optional label for the instance\n    ssh_public_key: Public key installed as root access. Mutually exclusive\n                    with user_data (provider limitation) — provide exactly one.\n    user_data: cloud-init config (plain text #cloud-config). Use\n               ssh_authorized_keys inside it if you need a key AND user data.\n    root_disk_size: GB (default max(min_disk, 25))\n    storage_type: \"CENTRAL\" (redundant) or \"LOCAL\" (faster I/O)\n    max_lifetime_hours: Hard TTL, 1-336 (default 72)\n\nReturns:\n    Instance dict: {\"id\", \"state\": \"launching\", \"public_ip\", \"instance_type\",\n    \"hourly_price_cad\", \"terminate_after\", ...}. Poll get_compute_instance\n    until state is \"running\" and public_ip is set (~1-3 min).\n\nErrors:\n    PAYMENT_REQUIRED: No active subscription to bill against\n    LIMIT_EXCEEDED: Concurrent instance cap reached\n    SPEND_CAP_EXCEEDED: Monthly compute spend cap reached\n    VALIDATION_ERROR: Bad type/image/disk/TTL, or both/neither of\n                      ssh_public_key and user_data\n","inputSchema":{"properties":{"instance_type":{"title":"Instance Type","type":"string"},"image_id":{"title":"Image Id","type":"string"},"name":{"default":"","title":"Name","type":"string"},"ssh_public_key":{"default":"","title":"Ssh Public Key","type":"string"},"user_data":{"default":"","title":"User Data","type":"string"},"root_disk_size":{"default":0,"title":"Root Disk Size","type":"integer"},"storage_type":{"default":"CENTRAL","title":"Storage Type","type":"string"},"max_lifetime_hours":{"default":0,"title":"Max Lifetime Hours","type":"integer"}},"required":["instance_type","image_id"],"title":"launch_compute_instanceArguments","type":"object"}},{"name":"list_compute_instances","description":"List your on-demand compute instances with month-to-date spend.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"instances\": [...], \"month_to_date_spend_cad\": 12.34,\n     \"monthly_spend_cap_cad\": 500.0}\n","inputSchema":{"properties":{"include_terminated":{"default":false,"title":"Include Terminated","type":"boolean"}},"title":"list_compute_instancesArguments","type":"object"}},{"name":"get_compute_instance","description":"Get live details for a compute instance (state, public IP, accrued cost).\n\nState is synced from the cloud provider on each call. SSH as root once\nstate is \"running\" and public_ip is set.\n\nRequires: API key with read scope.\n\nArgs:\n    instance_id: Instance UUID from launch_compute_instance / list\n\nReturns:\n    {\"id\", \"state\", \"public_ip\", \"hourly_price_cad\", \"accrued_cad\",\n     \"terminate_after\", ...}\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"}},"required":["instance_id"],"title":"get_compute_instanceArguments","type":"object"}},{"name":"start_compute_instance","description":"Start a stopped compute instance.\n\nRequires: API key with write scope.\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"}},"required":["instance_id"],"title":"start_compute_instanceArguments","type":"object"}},{"name":"stop_compute_instance","description":"Stop a compute instance. WARNING: hourly billing continues while stopped.\n\nUse terminate_compute_instance to stop the charges permanently.\n\nRequires: API key with write scope.\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"}},"required":["instance_id"],"title":"stop_compute_instanceArguments","type":"object"}},{"name":"reboot_compute_instance","description":"Reboot a running compute instance.\n\nRequires: API key with write scope.\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"}},"required":["instance_id"],"title":"reboot_compute_instanceArguments","type":"object"}},{"name":"terminate_compute_instance","description":"Permanently terminate a compute instance — this stops hourly billing.\n\nThe instance and its disk are destroyed and cannot be recovered. Copy any\nresults off the instance before terminating.\n\nRequires: API key with write scope.\n\nReturns:\n    Final instance dict with state \"terminated\" and total accrued_cad.\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"}},"required":["instance_id"],"title":"terminate_compute_instanceArguments","type":"object"}},{"name":"list_compute_volumes","description":"List your compute volumes — machines that survive instance termination.\n\nA volume is a whole machine (packages, drivers, services, users, data)\nstored in Canada. Detaching destroys the instance but keeps the machine;\nattaching restores it onto a fresh instance, optionally of a DIFFERENT\ntype. That is how you move a workload from a small CPU box to a big GPU\nbox without rebuilding it.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"volumes\": [{\"id\", \"name\", \"state\", \"instance_type\", \"stored_gb\",\n    \"has_snapshot\", \"instance\": {...} or null}, ...],\n    \"price_cad_per_gb_month\": 0.03}\n\n    state is one of: creating, attached, detaching, detached, attaching,\n    error. Only \"attached\" has a running instance you can log into.\n","inputSchema":{"properties":{},"title":"list_compute_volumesArguments","type":"object"}},{"name":"get_compute_volume","description":"Get a volume's live state, its instance, and its monthly storage cost.\n\nRequires: API key with read scope.\n\nReturns:\n    Volume dict plus \"monthly_storage_cad\". After attach, poll this until\n    instance.state is \"running\" — then allow a few more minutes for the\n    restore to finish and the machine to reboot into itself.\n","inputSchema":{"properties":{"volume_id":{"title":"Volume Id","type":"string"}},"required":["volume_id"],"title":"get_compute_volumeArguments","type":"object"}},{"name":"create_compute_volume","description":"Create a persistent machine and boot its first instance.\n\nStart here, then set the machine up however you like (install packages,\ndrivers, models). Everything you do becomes part of the volume the first\ntime you detach or snapshot it.\n\nWhile attached you pay hourly compute; while detached you pay only for\nstored bytes (CA$0.03/GB/month). Stopping an instance does NOT save money\non this provider — detaching is what stops the compute charge.\n\nRequires: API key with write scope, and an active subscription.\n\nArgs:\n    name: Label for the volume, e.g. \"trainer\"\n    image_id: From list_compute_images, e.g. \"UBUNTU_24_04_64BIT\".\n              Cannot change later — restores must land on the same OS.\n    instance_type: From list_compute_types, e.g. \"lsw.g6.xlarge\".\n                   CAN change on every later attach.\n    ssh_public_key: Required. Volume instances always boot via cloud-init,\n                    so this is the only way in.\n    root_disk_size: GB. Defaults to the type's minimum (or 25).\n\nReturns:\n    Volume dict with state \"attached\". Poll get_compute_volume until\n    instance.state is \"running\" (~1-3 min).\n\nErrors:\n    PAYMENT_REQUIRED: No active subscription\n    LIMIT_EXCEEDED: Volume cap reached\n    NOT_AVAILABLE: Volumes not enabled on this deployment\n","inputSchema":{"properties":{"name":{"title":"Name","type":"string"},"image_id":{"title":"Image Id","type":"string"},"instance_type":{"title":"Instance Type","type":"string"},"ssh_public_key":{"title":"Ssh Public Key","type":"string"},"root_disk_size":{"default":0,"title":"Root Disk Size","type":"integer"}},"required":["name","image_id","instance_type","ssh_public_key"],"title":"create_compute_volumeArguments","type":"object"}},{"name":"adopt_compute_instance","description":"Turn an instance you are ALREADY running into a persistent volume.\n\nUse this when you launched something, set it up, and then decided you want\nto keep it. Nothing reboots and no data moves — the machine you have\nbecomes the volume, and you can detach it afterwards to stop paying for\ncompute while keeping the machine. Beats creating a volume and rebuilding.\n\nOnly instances launched with an ssh_public_key qualify. One launched with\nyour own user_data carries only your key, and a key cannot be added to a\nmachine we cannot already log into — check \"managed_ssh\" on the instance.\n\nRequires: API key with write scope, and an active subscription.\n\nArgs:\n    instance_id: A running lsw.* instance you own\n    name: Label for the volume (defaults to the instance name)\n\nReturns:\n    Volume dict with state \"attached\", wrapping that same instance. No\n    snapshot exists yet — the first one is taken on detach or snapshot.\n\nErrors:\n    CONFLICT: Not running, already a volume, BorealHost Metal, or launched\n              without BorealHost management access\n","inputSchema":{"properties":{"instance_id":{"title":"Instance Id","type":"string"},"name":{"default":"","title":"Name","type":"string"}},"required":["instance_id"],"title":"adopt_compute_instanceArguments","type":"object"}},{"name":"detach_compute_volume","description":"Queue: snapshot the machine, verify it, then destroy the instance.\n\nThis is how you stop paying for compute while keeping your work.\n\nASYNCHRONOUS. Returns immediately with state \"detaching\" — it does NOT mean\nthe detach finished. The capture takes minutes (roughly 1 min per 10 GB plus\nverification), so it runs in a background worker. Poll get_compute_volume\nuntil state is \"detached\" (done) or \"error\" (failed).\n\nSafety: if the snapshot or its verification fails, the instance is left\nRUNNING and the volume goes to state \"error\". Your data is never traded\nfor a tidy state machine. Retry the detach once you have fixed the cause.\n\nRequires: API key with write scope.\n\nReturns:\n    Volume dict with state \"detaching\". Poll for the outcome.\n","inputSchema":{"properties":{"volume_id":{"title":"Volume Id","type":"string"}},"required":["volume_id"],"title":"detach_compute_volumeArguments","type":"object"}},{"name":"attach_compute_volume","description":"Restore a detached volume onto a fresh instance — optionally a new type.\n\nPass a different instance_type to move the same machine to different\nhardware: this is the closest thing to changing instance type that the\nprovider allows, since it has no resize API at all.\n\nThe restore runs at first boot and the machine reboots into itself, so the\ninstance answers SSH BEFORE it is ready. Poll get_compute_volume and give\nit a few minutes (measured: ~6 min for a 10 GB GPU machine end to end).\n\nThe machine keeps its SSH host keys, so your client will not warn about a\nchanged host identity.\n\nRequires: API key with write scope.\n\nArgs:\n    volume_id: A volume in state \"detached\"\n    ssh_public_key: Required — installed via cloud-init at boot\n    instance_type: Defaults to the type it last ran on\n    root_disk_size: GB. May grow, never shrink below the volume's size.\n\nReturns:\n    Volume dict with state \"attached\" and a new instance.\n\nErrors:\n    CONFLICT: Volume is not detached, or has no snapshot yet\n","inputSchema":{"properties":{"volume_id":{"title":"Volume Id","type":"string"},"ssh_public_key":{"title":"Ssh Public Key","type":"string"},"instance_type":{"default":"","title":"Instance Type","type":"string"},"root_disk_size":{"default":0,"title":"Root Disk Size","type":"integer"}},"required":["volume_id","ssh_public_key"],"title":"attach_compute_volumeArguments","type":"object"}},{"name":"snapshot_compute_volume","description":"Queue a checkpoint snapshot without detaching — before a risky change.\n\nASYNCHRONOUS. Returns immediately with state \"snapshotting\"; poll\nget_compute_volume until it is back to \"attached\" (done) or \"error\".\n\nNamed systemd units are stopped for the capture so the snapshot is\napplication-consistent (a live database directory copied mid-write is not\nreliably restorable). The worker restarts nothing — reboot or start them\nyourself afterwards.\n\nRequires: API key with write scope.\n\nArgs:\n    volume_id: A volume in state \"attached\"\n    quiesce_units: Services to stop during capture,\n                   e.g. [\"ollama.service\", \"postgresql.service\"]\n\nReturns:\n    Volume dict with state \"snapshotting\". Poll for the outcome.\n","inputSchema":{"properties":{"volume_id":{"title":"Volume Id","type":"string"},"quiesce_units":{"default":null,"items":{},"title":"Quiesce Units","type":"array"}},"required":["volume_id"],"title":"snapshot_compute_volumeArguments","type":"object"}},{"name":"delete_compute_volume","description":"Permanently delete a volume and everything stored in it.\n\nIrreversible: the instance is released AND the stored data is purged from\nobject storage, so billing genuinely stops. Refuses while an instance is\nlive unless force=True, so a running machine's only copy cannot be\ndestroyed by reflex.\n\nRequires: API key with admin scope.\n\nReturns:\n    {\"id\", \"state\": \"deleted\"}\n","inputSchema":{"properties":{"volume_id":{"title":"Volume Id","type":"string"},"force":{"default":false,"title":"Force","type":"boolean"}},"required":["volume_id"],"title":"delete_compute_volumeArguments","type":"object"}},{"name":"container_action","description":"Start, stop, or restart a site's container.\n\nOnly for plans with a dedicated container (VPS / split-VPS / dedicated).\nShared-hosting sites share a container and cannot restart it. The\nresponse reports the observed container state after the action.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    action: \"start\", \"stop\", or \"restart\"\n\nReturns:\n    {\"site\", \"action\", \"status\": \"running|stopped\", \"observed\": true}\n\nErrors:\n    VALIDATION_ERROR: Shared-hosting plan or unknown action\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"action":{"title":"Action","type":"string"}},"required":["slug","action"],"title":"container_actionArguments","type":"object"}},{"name":"list_support_tickets","description":"List the account's support tickets.\n\nRequires: API key with read scope.\n\nArgs:\n    status: Optional filter (e.g. \"open\", \"closed\")\n\nReturns:\n    [{\"id\", \"subject\", \"status\", \"category\", \"created_at\", ...}, ...]\n","inputSchema":{"properties":{"status":{"default":"","title":"Status","type":"string"}},"title":"list_support_ticketsArguments","type":"object"}},{"name":"get_support_ticket","description":"Get a support ticket with its full message thread.\n\nRequires: API key with read scope.\n\nArgs:\n    ticket_id: Ticket UUID from list_support_tickets\n\nReturns:\n    {\"id\", \"subject\", \"status\", \"messages\": [...]}\n","inputSchema":{"properties":{"ticket_id":{"title":"Ticket Id","type":"string"}},"required":["ticket_id"],"title":"get_support_ticketArguments","type":"object"}},{"name":"create_support_ticket","description":"Open a support ticket with the BorealHost team.\n\nUse this to escalate platform-side problems you cannot fix with the\navailable tools (billing issues, infrastructure faults, API bugs).\nA human answers every ticket — poll get_support_ticket for updates.\n\nRequires: API key with write scope.\n\nArgs:\n    subject: Short summary (max 200 chars)\n    message: Full description (max 20000 chars)\n    category: Optional (e.g. \"technical\", \"billing\")\n    site: Optional site slug the ticket concerns\n\nReturns:\n    {\"id\", \"subject\", \"status\", \"message\": \"Ticket created...\"}\n","inputSchema":{"properties":{"subject":{"title":"Subject","type":"string"},"message":{"title":"Message","type":"string"},"category":{"default":"","title":"Category","type":"string"},"site":{"default":"","title":"Site","type":"string"}},"required":["subject","message"],"title":"create_support_ticketArguments","type":"object"}},{"name":"reply_support_ticket","description":"Add a message to an existing support ticket.\n\nRequires: API key with write scope.\n\nArgs:\n    ticket_id: Ticket UUID\n    message: Reply text\n\nReturns:\n    {\"id\", \"status\", ...}\n","inputSchema":{"properties":{"ticket_id":{"title":"Ticket Id","type":"string"},"message":{"title":"Message","type":"string"}},"required":["ticket_id","message"],"title":"reply_support_ticketArguments","type":"object"}},{"name":"get_backup_retention","description":"Get the backup retention policy for a VPS site.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"site\", \"retention\": {\"keep_daily\", \"keep_weekly\", \"keep_monthly\"}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_backup_retentionArguments","type":"object"}},{"name":"set_backup_retention","description":"Set the backup retention policy for a VPS site.\n\nStorage is billed on real stored bytes, so deeper history costs the\ncustomer, not the platform. Values are clamped to platform bounds; the\nresponse reports what was actually stored. Pass -1 to leave a knob\nunchanged, or reset=true to restore defaults.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"site\", \"retention\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"keep_daily":{"default":-1,"title":"Keep Daily","type":"integer"},"keep_weekly":{"default":-1,"title":"Keep Weekly","type":"integer"},"keep_monthly":{"default":-1,"title":"Keep Monthly","type":"integer"},"reset":{"default":false,"title":"Reset","type":"boolean"}},"required":["slug"],"title":"set_backup_retentionArguments","type":"object"}},{"name":"delete_backup","description":"Permanently delete a single backup (metadata + stored snapshot).\n\nIrreversible. Requires: API key with admin scope.\n\nReturns:\n    {\"site\", \"backup_id\", \"deleted\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"backup_id":{"title":"Backup Id","type":"string"}},"required":["slug","backup_id"],"title":"delete_backupArguments","type":"object"}},{"name":"list_redirects","description":"List HTTP redirect rules for a site.\n\nRequires: API key with read scope.\n\nReturns:\n    [{\"id\", \"source_path\", \"target_url\", \"redirect_type\"}, ...]\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"list_redirectsArguments","type":"object"}},{"name":"add_redirect","description":"Add an HTTP redirect rule to a site.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    source_path: Path to redirect, must start with \"/\" (e.g. \"/old-page\")\n    target_url: Destination URL\n    redirect_type: 301 (permanent, default) or 302 (temporary)\n\nReturns:\n    {\"id\", \"source_path\", \"target_url\", \"redirect_type\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"source_path":{"title":"Source Path","type":"string"},"target_url":{"title":"Target Url","type":"string"},"redirect_type":{"default":301,"title":"Redirect Type","type":"integer"}},"required":["slug","source_path","target_url"],"title":"add_redirectArguments","type":"object"}},{"name":"delete_redirect","description":"Delete a redirect rule by source path or id.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"site\", \"deleted\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"source_path":{"default":"","title":"Source Path","type":"string"},"redirect_id":{"default":"","title":"Redirect Id","type":"string"}},"required":["slug"],"title":"delete_redirectArguments","type":"object"}},{"name":"set_force_https","description":"Enable or disable the HTTP→HTTPS redirect for a site.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"site\", \"force_https\": true|false, \"message\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"enabled":{"title":"Enabled","type":"boolean"}},"required":["slug","enabled"],"title":"set_force_httpsArguments","type":"object"}},{"name":"list_db_users","description":"List database users for a site.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"engine\", \"users\": [{\"user\", \"host\", ...}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"engine":{"default":"mysql","title":"Engine","type":"string"}},"required":["slug"],"title":"list_db_usersArguments","type":"object"}},{"name":"manage_db_user","description":"Manage a database user on a site.\n\nActions: \"create\" (user+password), \"drop\" (user),\n\"set_password\" (user+password), \"grants\" (list a user's grants),\n\"grant\" / \"revoke\" (user+database, optional privileges e.g. \"ALL\"\nor \"SELECT,INSERT\").\n\nRequires: API key with write scope.\n\nReturns:\n    {\"engine\", \"action\", \"result\": {...}}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"action":{"title":"Action","type":"string"},"engine":{"default":"mysql","title":"Engine","type":"string"},"user":{"default":"","title":"User","type":"string"},"password":{"default":"","title":"Password","type":"string"},"database":{"default":"","title":"Database","type":"string"},"privileges":{"default":"","title":"Privileges","type":"string"},"host":{"default":"","title":"Host","type":"string"}},"required":["slug","action"],"title":"manage_db_userArguments","type":"object"}},{"name":"transfer_out_domain","description":"Prepare a domain to transfer to another registrar.\n\nUnlocks the domain and emails the EPP/auth code to the registrant\ncontact on file (BorealHost never sees the code). The domain keeps\nworking here until the transfer completes.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"domain\", \"unlocked\": true, \"auth_code_emailed\": true, \"message\"}\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"transfer_out_domainArguments","type":"object"}},{"name":"enable_wildcard","description":"Route *.domain (every subdomain) to the domain's linked site.\n\nCreates a wildcard DNS record and issues a wildcard certificate via\nACME DNS-01. SLOW — DNS propagation is part of the challenge, expect\n2-5 minutes. Requires the domain to be linked to a site and its DNS\nhosted by BorealHost.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"domain\", \"wildcard\", \"site\", \"ssl_active\", \"not_after\"}\n","inputSchema":{"properties":{"domain_name":{"title":"Domain Name","type":"string"}},"required":["domain_name"],"title":"enable_wildcardArguments","type":"object"}},{"name":"upload_ssl_cert","description":"Install your own SSL certificate for a site's domain.\n\nThe certificate must be a PEM fullchain (leaf + intermediates) and the\nkey unencrypted PEM. Validated (parse, key match, domain coverage,\nexpiry) before nginx is touched; nginx config is tested before reload.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"site\", \"domain\", \"server_names\", \"installed\": true,\n     \"ssl_active\": true, \"not_after\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"domain":{"title":"Domain","type":"string"},"fullchain_pem":{"title":"Fullchain Pem","type":"string"},"privkey_pem":{"title":"Privkey Pem","type":"string"}},"required":["slug","domain","fullchain_pem","privkey_pem"],"title":"upload_ssl_certArguments","type":"object"}},{"name":"get_email_status","description":"Email addon status and mailboxes for a site.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"configured\": bool, \"domain\", \"mailboxes\", \"mailbox_list\": [...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_email_statusArguments","type":"object"}},{"name":"setup_email","description":"Enable business email (hosted mailboxes + webmail) on a domain.\n\nCreates the hosted-email domain, sets up outbound authentication\n(DKIM/SPF), and auto-configures MX/SPF DNS when the zone is hosted by\nBorealHost. Mailboxes are billed per-mailbox on the site subscription.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"configured\": true, \"domain\", \"dns_auto_configured\", \"message\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"domain":{"title":"Domain","type":"string"}},"required":["slug","domain"],"title":"setup_emailArguments","type":"object"}},{"name":"create_mailbox","description":"Create a mailbox on the site's email domain.\n\nPassword is generated when omitted and returned ONCE — store it.\nEach mailbox adds to the subscription's email billing.\n\nRequires: API key with write scope.\n\nArgs:\n    slug: Site identifier\n    local_part: Part before the @ (e.g. \"info\")\n    display_name: Optional display name\n    password: Optional password (generated if empty)\n\nReturns:\n    {\"email\", \"password\", \"message\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"local_part":{"title":"Local Part","type":"string"},"display_name":{"default":"","title":"Display Name","type":"string"},"password":{"default":"","title":"Password","type":"string"}},"required":["slug","local_part"],"title":"create_mailboxArguments","type":"object"}},{"name":"delete_mailbox","description":"Delete a mailbox (its mail is destroyed).\n\nRequires: API key with write scope.\n\nReturns:\n    {\"email\", \"deleted\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"email":{"title":"Email","type":"string"}},"required":["slug","email"],"title":"delete_mailboxArguments","type":"object"}},{"name":"reset_mailbox_password","description":"Reset a mailbox password (generated when omitted, returned ONCE).\n\nRequires: API key with write scope.\n\nReturns:\n    {\"email\", \"password\", \"message\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"email":{"title":"Email","type":"string"},"new_password":{"default":"","title":"New Password","type":"string"}},"required":["slug","email"],"title":"reset_mailbox_passwordArguments","type":"object"}},{"name":"get_webmail_url","description":"One-time webmail single-sign-on URL for a mailbox.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"email\", \"url\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"email":{"title":"Email","type":"string"}},"required":["slug","email"],"title":"get_webmail_urlArguments","type":"object"}},{"name":"list_webhooks","description":"List webhook endpoints registered on the account.\n\nRequires: API key with read scope.\n\nReturns:\n    [{\"id\", \"url\", \"events\", \"is_active\", \"last_status\",\n      \"failure_count\"}, ...]\n","inputSchema":{"properties":{},"title":"list_webhooksArguments","type":"object"}},{"name":"create_webhook","description":"Register a webhook endpoint for platform events.\n\nEvents (backup failures, security notices, hosting incidents, billing)\nare POSTed as JSON, signed with X-BH-Signature (HMAC-SHA256 of the raw\nbody). The signing secret is returned ONCE. Categories: billing,\nsecurity, hosting, decommission, general — empty list means all.\nEndpoints auto-disable after 20 consecutive failures.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"id\", \"url\", \"events\", \"secret\", \"message\"}\n","inputSchema":{"properties":{"url":{"title":"Url","type":"string"},"events":{"default":null,"items":{},"title":"Events","type":"array"}},"required":["url"],"title":"create_webhookArguments","type":"object"}},{"name":"delete_webhook","description":"Remove a webhook endpoint.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"id\", \"deleted\": true}\n","inputSchema":{"properties":{"endpoint_id":{"title":"Endpoint Id","type":"string"}},"required":["endpoint_id"],"title":"delete_webhookArguments","type":"object"}},{"name":"test_webhook","description":"Send a test event to a webhook endpoint (async).\n\nPoll list_webhooks afterwards for last_status.\n\nRequires: API key with write scope.\n\nReturns:\n    {\"id\", \"message\"}\n","inputSchema":{"properties":{"endpoint_id":{"title":"Endpoint Id","type":"string"}},"required":["endpoint_id"],"title":"test_webhookArguments","type":"object"}},{"name":"get_smtp_relay","description":"List SMTP relay credentials for a site, with domain-auth status.\n\nRequires: API key with read scope.\n\nReturns:\n    {\"relays\": [{\"relay_id\", \"domain\", \"status\",\n                 \"domain_authenticated\"}, ...]}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"}},"required":["slug"],"title":"get_smtp_relayArguments","type":"object"}},{"name":"enable_smtp_relay","description":"Enable an SMTP relay for a site's outbound transactional mail.\n\nProvisions a mail-send-only credential on the platform relay and\nconfigures SPF/DKIM DNS when the domain zone is hosted here. The SMTP\npassword is returned ONCE. Use TLS on port 587, username \"apikey\".\n\nRequires: API key with write scope.\n\nReturns:\n    {\"relay_id\", \"domain\", \"smtp_host\", \"smtp_ports\", \"smtp_username\",\n     \"smtp_password\", \"dns_auto_configured\", \"message\"}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"domain":{"title":"Domain","type":"string"}},"required":["slug","domain"],"title":"enable_smtp_relayArguments","type":"object"}},{"name":"revoke_smtp_relay","description":"Revoke an SMTP relay credential (immediate at the relay).\n\nRequires: API key with write scope.\n\nReturns:\n    {\"relay_id\", \"revoked\": true}\n","inputSchema":{"properties":{"slug":{"title":"Slug","type":"string"},"relay_id":{"title":"Relay Id","type":"string"}},"required":["slug","relay_id"],"title":"revoke_smtp_relayArguments","type":"object"}}]}},"http_status":200,"headers":{"content-type":"text/event-stream","mcp-session-id":"9e0ee89ced6d4596a953c40a587ebaec"},"session_id_present":true,"transport":"streamable-http","requested_protocol_version":"2025-03-26","resumed":true}},"step_up_auth_probe":{"status":"missing","latency_ms":null,"details":{"oauth_present":false,"auth_required_checks":[],"supported_scopes":[],"scope_specificity_ratio":0.0,"broad_scopes":[],"challenge_headers":[],"step_up_signals":[],"minimal_scope_documented":false}},"transport_compliance_probe":{"status":"warning","latency_ms":56.87,"details":{"transport":"streamable-http","session_id_present":true,"protocol_header_present":false,"last_event_id_visible":false,"requested_protocol_version":"2025-03-26","bad_protocol_status_code":400,"bad_protocol_payload":{"jsonrpc":"2.0","id":"server-error","error":{"code":-32600,"message":"Bad Request: Unsupported protocol version: 1999-99-99. Supported versions: 2024-11-05, 2025-03-26, 2025-06-18, 2025-11-25"}},"bad_protocol_headers":{"content-type":"application/json","mcp-session-id":"9e0ee89ced6d4596a953c40a587ebaec"},"bad_protocol_error":null,"delete_status_code":200,"delete_error":null,"expired_session_status_code":404,"expired_session_error":null,"issues":["missing_protocol_header"]}},"utility_coverage_probe":{"status":"missing","latency_ms":29.67,"details":{"completions":{"advertised":false,"sample_target":null,"live_probe":"not_executed"},"pagination":{"supported":false,"next_cursor_methods":[],"metadata_signal":false},"tasks":{"advertised":false,"probe_status":"missing","http_status":400},"initialize_capability_keys":["experimental","prompts","resources","tools"]}},"advanced_capabilities_probe":{"status":"missing","latency_ms":null,"details":{"capabilities":{"prompts":false,"resources":false,"completions":false,"roots":false,"sampling":false,"elicitation":false,"structured_outputs":false,"resource_links":false},"enabled_count":0,"enabled":[],"initialize_capability_keys":["experimental","prompts","resources","tools"]}},"tool_snapshot_probe":{"status":"missing","latency_ms":null,"details":{"reason":"no_tools"}},"connector_replay_probe":{"status":"missing","latency_ms":null,"details":{"reason":"no_tools"}},"request_association_probe":{"status":"missing","latency_ms":null,"details":{"reason":"no_request_association_capabilities_advertised"}},"interactive_flow_probe":{"status":"missing","latency_ms":null,"details":{"risk_hits":[],"safe_hits":[],"oauth_supported":false,"prompt_available":false}},"action_safety_probe":{"status":"not_assessed","latency_ms":null,"details":{"summary":{"tool_count":0,"high_risk_tools":0,"destructive_tools":0,"exec_tools":0,"egress_tools":0,"secret_tools":0,"bulk_access_tools":0,"declared_non_read_only_tools":0,"annotation_conflict_tools":0,"risk_distribution":{"low":0,"medium":0,"high":0,"critical":0},"capability_distribution":{},"has_mutating_capability":false,"has_non_read_capability":false},"auth_present":false,"safeguard_count":0,"confirmation_signals":[],"reason":"empty_observation_set"}},"official_registry_probe":{"status":"ok","latency_ms":null,"details":{"registry_source":"official_registry","registry_identifier":"ai.borealhost/mcp","direct_match":true,"official_peer_count":1}},"provenance_divergence_probe":{"status":"not_assessed","latency_ms":null,"details":{"direct_official_match":true,"registry_title":null,"server_card_title":null,"registry_version":null,"server_card_version":null,"registry_homepage":null,"server_card_homepage":null,"registry_repository":null,"server_card_repository":null,"drift_fields":[],"metadata_document_count":2,"compared_fields":["title","version","homepage","repository"],"readable_sources":["registry"],"comparable_field_count":0}},"schema_divergence_probe":{"status":"missing","latency_ms":null,"details":{"reason":"no_server_card_tools","compared_tool_count":0,"compared_dimensions":["server_name","server_version","declared_vs_observed_auth","tool_membership","parameter_names","required_parameters","parameter_types","output_schema_presence"],"server_name_mismatch":false,"card_server_name":null,"live_server_name":"BorealHost","server_version_mismatch":false,"card_server_version":null,"live_server_version":"1.27.0","auth_scheme_mismatch":false}},"connector_publishability_probe":{"status":"error","latency_ms":null,"details":{"transport":"streamable-http","tool_count":0,"high_risk_tools":0,"blockers":["tools_list","protocol_version","step_up_auth","transport_compliance","connector_replay","request_association","action_safety","server_card","tool_surface"],"criteria":{"remote_transport":true,"initialize":true,"tools_list":false,"protocol_version":false,"session_resume":true,"step_up_auth":false,"transport_compliance":false,"connector_replay":false,"request_association":false,"action_safety":false,"server_card":false,"tool_surface":false,"auth_flow":true}}}}},"active_alerts":[{"code":"server_failing","severity":"critical","title":"Latest validation is failing","message":"Core MCP flows did not validate successfully on the latest run.","addressee":"publisher"}],"maintainer_analytics":{},"public_server_reputation":{},"maintainer_response_quality":{},"maintainer_annotations":[],"maintainer_rebuttals":[],"security_posture_summary":{},"tool_security_inventory":[],"transport_compliance":{},"utility_coverage":{},"write_action_governance":{},"provenance_divergence":{},"alias_consolidation":{},"alert_routing":{},"authenticated_validation":{},"hosted_runtime":{},"action_controls_diff":null,"benchmark_tasks":[],"latest_capability_counts":{},"point_loss_breakdown":[],"verdict_traces":{},"current_snapshot":{"schema_version":"verify.trust_snapshot.v1","snapshot_id":"trustsnap_03166aba98a0a17d","generated_at":"2026-09-09T15:07:13.180866+00:00","trust_evaluated_at":"2026-09-09T15:07:13.180866+00:00","evidence_revision":"9ba824ea3ab133f50324fe64","source":"current_snapshot","server":"ai.borealhost/mcp","last_validated_at":"2026-09-09T03:59:49.812190+00:00","validation_age_hours":11.12,"freshness":{"schema_version":"verify.freshness_profile.v1","last_validated_at":"2026-09-09T03:59:49.812190+00:00","age_hours":11.12,"bucket":"verified_last_24h","label":"Verified in last 24h","badges":["verified_last_24h"],"freshness_sla_hours":720.0,"freshness_sla_status":"met","stale_score_suppressed":false,"display_score":null,"raw_score":null,"confidence_score":null,"confidence_weighted_score":null,"tier_status":[{"tier":"community","label":"Community","freshness_sla_hours":720,"met":true,"priority_revalidation":false},{"tier":"pro","label":"Pro","freshness_sla_hours":168,"met":true,"priority_revalidation":true},{"tier":"enterprise","label":"Enterprise","freshness_sla_hours":24,"met":true,"priority_revalidation":true}]},"current_status":"failing","current_score":null,"display_score":null,"stale_score_suppressed":false,"production_trust_decision":{"schema_version":"verify.executive_verdict.v1","decision":"Not assessed","why":"tool surface has not been observed by any completed validation run","next_action":"revalidate so the tool surface can be inspected before a production decision is made","reason_count":0},"production_readiness_class":{"code":"failing","label":"Failing","reason":"The latest validation run was attempted but did not complete successfully."},"evidence_confidence":{"score":null,"label":"not_assessed","validation_age_hours":11.12,"live_check_count":6,"basis":{"evidence_bearing_validations":0,"affirmative_live_check_count":6,"validation_age_hours":11.12,"freshness_threshold_hours":24}},"active_alerts":[{"code":"server_failing","severity":"critical","title":"Latest validation is failing"}],"active_alert_summary":{"critical":1,"high":0,"medium":0,"low":0,"high_or_critical":1,"total":1},"materialization":{"state":"partial","trust_core_complete":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"materialized_at":"2026-09-09T15:07:13.180866+00:00"}},"trust_snapshot":{"schema_version":"verify.trust_snapshot.v1","snapshot_id":"trustsnap_03166aba98a0a17d","generated_at":"2026-09-09T15:07:13.180866+00:00","trust_evaluated_at":"2026-09-09T15:07:13.180866+00:00","evidence_revision":"9ba824ea3ab133f50324fe64","source":"current_snapshot","server":"ai.borealhost/mcp","last_validated_at":"2026-09-09T03:59:49.812190+00:00","validation_age_hours":11.12,"freshness":{"schema_version":"verify.freshness_profile.v1","last_validated_at":"2026-09-09T03:59:49.812190+00:00","age_hours":11.12,"bucket":"verified_last_24h","label":"Verified in last 24h","badges":["verified_last_24h"],"freshness_sla_hours":720.0,"freshness_sla_status":"met","stale_score_suppressed":false,"display_score":null,"raw_score":null,"confidence_score":null,"confidence_weighted_score":null,"tier_status":[{"tier":"community","label":"Community","freshness_sla_hours":720,"met":true,"priority_revalidation":false},{"tier":"pro","label":"Pro","freshness_sla_hours":168,"met":true,"priority_revalidation":true},{"tier":"enterprise","label":"Enterprise","freshness_sla_hours":24,"met":true,"priority_revalidation":true}]},"current_status":"failing","current_score":null,"display_score":null,"stale_score_suppressed":false,"production_trust_decision":{"schema_version":"verify.executive_verdict.v1","decision":"Not assessed","why":"tool surface has not been observed by any completed validation run","next_action":"revalidate so the tool surface can be inspected before a production decision is made","reason_count":0},"production_readiness_class":{"code":"failing","label":"Failing","reason":"The latest validation run was attempted but did not complete successfully."},"evidence_confidence":{"score":null,"label":"not_assessed","validation_age_hours":11.12,"live_check_count":6,"basis":{"evidence_bearing_validations":0,"affirmative_live_check_count":6,"validation_age_hours":11.12,"freshness_threshold_hours":24}},"active_alerts":[{"code":"server_failing","severity":"critical","title":"Latest validation is failing"}],"active_alert_summary":{"critical":1,"high":0,"medium":0,"low":0,"high_or_critical":1,"total":1},"materialization":{"state":"partial","trust_core_complete":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"materialized_at":"2026-09-09T15:07:13.180866+00:00"}},"agent_commerce":{},"latest_claim":null,"maintainer_profile_slug":null,"watch_summary":{},"partial":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"trust_evaluated_at":"2026-09-09T15:07:13.180866+00:00","evidence_revision":"9ba824ea3ab133f50324fe64","active_alert_summary":{"critical":1,"high":0,"medium":0,"low":0,"high_or_critical":1,"total":1},"materialization":{"state":"partial","trust_core_complete":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"materialized_at":"2026-09-09T15:07:13.180866+00:00"},"owner_opted_out":false,"observed_attention":{"schema":"verify.observed_attention.v1","window_days":30,"level":"none","label":"No observed attention","summary":"No recent machine-readable trust or discovery activity observed for this server.","segments":{"useful_ai_user":{"level":"none","observed":false,"description":"AI-assisted user sessions such as ChatGPT/User or Claude/User."},"machine_trust_evaluator":{"level":"none","observed":false,"description":"Synthetic sessions inspecting multiple trust surfaces such as report, policy, ledger, badge, trust-summary, or compare."},"possible_agent_or_script":{"level":"none","observed":false,"description":"Structured direct sessions with rapid profile, compare, report, policy, badge, or trust-surface fan-out."},"isolated_machine_surface":{"level":"none","observed":false,"description":"Aged-out direct synthetic singleton sessions that touched a machine-readable trust surface without becoming a broader evaluator."},"ai_crawler":{"level":"none","observed":false,"description":"Known AI crawler activity such as ClaudeBot, GPTBot, or similar crawlers."},"search_crawler":{"level":"none","observed":false,"description":"Search and SEO crawler activity."},"browser_like_automation":{"level":"none","observed":false,"description":"Browser-like synthetic sessions with rapid structured endpoint activity."},"confirmed_human":{"level":"none","observed":false,"description":"Confirmed browser-session human activity."}},"surfaces_observed":{"server_profile":false,"compare":false,"compare_json":false,"compare_api":false,"report_json":false,"policy":false,"ledger":false,"badge_metadata":false,"badge_svg":false,"trust_summary":false,"mcp_tool":false},"claim_prompt":{"recommended":false,"reason":"No claim prompt is recommended from observed attention in the current window."},"notes":["Observed attention is based on segmented first-party telemetry.","Crawler and evaluator activity is not treated as confirmed human demand.","Public levels are bucketed to avoid exposing raw traffic counts."]},"owner_activation":{"claim_recommended":false,"reason":"no_observed_attention"},"snapshot_id":"trustsnap_03166aba98a0a17d"}],"rows":[{"label":"Snapshot ID","values":["trustsnap_03166aba98a0a17d"]},{"label":"Status","values":["failing"]},{"label":"Score","values":[null]},{"label":"Production readiness","values":["Failing"]},{"label":"Production trust decision","values":["Not assessed"]},{"label":"Recommended policy","values":["Not assessed"]},{"label":"Observed Attention","values":["No observed attention"]},{"label":"Evidence confidence","values":[null]},{"label":"Freshness","values":["n/a"]},{"label":"Latency","values":["n/a"]},{"label":"Spec recency","values":[2.0]},{"label":"Session resume","values":[4.0]},{"label":"Step-up auth","values":[0.0]},{"label":"Transport compliance","values":[3.0]},{"label":"Utility coverage","values":[0.0]},{"label":"Publishability","values":[0.0]},{"label":"Connector replay","values":[0.0]},{"label":"Request association","values":[0.0]},{"label":"Action safety","values":[null]},{"label":"Registry presence","values":[4.0]},{"label":"Provenance divergence","values":[null]},{"label":"Client compatibility: ChatGPT","values":["unknown"]},{"label":"Client compatibility: Claude","values":["unknown"]},{"label":"Write-action publishing","values":["unknown"]},{"label":"Snapshot churn risk","values":["unknown"]},{"label":"Transport","values":["streamable-http"]},{"label":"Auth","values":["Unauthenticated / none"]},{"label":"Tools","values":[0]},{"label":"Prompts","values":[0]},{"label":"Resources","values":[0]},{"label":"OAuth","values":[false]},{"label":"DCR","values":[false]},{"label":"Taxonomy","values":[""]},{"label":"Recommended for","values":["none"]},{"label":"Top alerts","values":["Latest validation is failing"]}],"partial":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"cache_note":"Compact compare fallback response; deep compare evidence is deferred to protect web capacity.","trust_evaluated_at":"2026-09-09T15:07:13.180866+00:00","materialization":{"state":"partial","trust_core_complete":true,"fields_unavailable":["tool_security_inventory","security_posture_summary","write_action_governance","capability_taxonomy","remediations"],"materialized_at":"2026-09-09T15:07:13.184258+00:00"}}