Shadow Warden AI — Gateway v7.1 — Explore the API Reference
Home / Business Community / Community & Collaboration

Community & Collaboration

19 features

CM-01

SEP / UECIID Protocol

✅ Shipped

Snowflake→base-62 entity IDs (SEP-{11 chars}). Cryptographically-unique, sortable, collision-free.

Community Business+ v4.6
CM-02

Inter-Community Peering

✅ Shipped

Three sharing modes: MIRROR_ONLY, REWRAP_ALLOWED, FULL_SYNC. HMAC-SHA256 handshake. Duplicate guard.

Community Business+ v4.6
CM-03

Knock-and-Verify Invitations

✅ Shipped

72-hour Redis-backed one-time invitation tokens. Invitee identity verified before member enrollment.

Community Business+ v4.6
CM-04

Reputation Engine

✅ Shipped

5-badge system: NEWCOMER → TRUSTED → CONTRIBUTOR → EXPERT → ELITE. Anonymised leaderboard (GDPR-safe).

Community Business+ v4.17
CM-05

Charter & Governance

✅ Shipped

Versioned community charters (DRAFT→ACTIVE→SUPERSEDED). Member acceptance tracking. Compliance scoring.

Community Business+ v4.8
CM-06

Behavioral Anomaly Detection

✅ Shipped

Z-score anomaly scoring. NORMAL/ELEVATED/CRITICAL thresholds. 30-day rolling baseline. SQLite event store.

Pro+ v4.8
CM-07

OAuth Agent Discovery

✅ Shipped

14-provider OAuth catalog. Scope-based risk scoring. ALLOW/MONITOR/BLOCK verdicts. Redis-backed policy.

Pro+ v4.8
CM-08

Community Intelligence Reports

✅ Shipped

Weighted risk score: 40% transfer rejection + 35% anomaly + 25% governance gap. SAFE→CRITICAL labels.

Pro+ v4.8
CM-09

STIX 2.1 Tamper-Evident Audit

✅ Shipped

SHA-256 prev_hash chain per community. Genesis block. OASIS STIX JSONL export for SIEM ingestion.

Pro+ v4.7
CM-35

AI Incident Register

✅ Shipped

STIX 2.1-linked AI incident journal. Severity: LOW/MEDIUM/HIGH/CRITICAL. Auto-log from filter BLOCK events. Status transitions: open→investigating→resolved→closed. Every incident appended to STIX audit chain.

Individual+ v4.25
CM-36

Supplier AI Risk Assessment

✅ Shipped

5-criteria composite scoring: data access, AI capability, compliance posture, peering history, disclosure recency. Risk labels: LOW/MEDIUM/HIGH/CRITICAL. Derived from sep_transfers velocity — no external API calls.

Community Business+ v4.26
CM-37

Shared Prompt Library

✅ Shipped

UECIID provenance on every prompt. Injection screening via POST /filter before save. Versioning, community sharing via Causal Transfer Guard. 6 endpoints at /prompt-library/*.

Community Business+ v4.27
CM-38

Employee AI Training Records

✅ Shipped

HMAC-SHA256 attested completion records (VAULT_MASTER_KEY). Expiry tracking, compliance report. Behavioral anomaly hook on ai_training_completed. 5 endpoints at /training/*.

Community Business+ v4.28
CM-40

Agentic Commerce Protocols (UCP/AP2/MCP) integration

✅ Shipped

Secure AI-driven procurement with mandate controls, vendor validation, and BI analytics. UCP store discovery, AP2 signed spending mandates, MCP agent intent bridge, Vendor Governance integration, Cost Allocation recording, STIX audit chain per order.

Community Business+ v5.0
CM-41

Web3 On-Chain Mandates (Ethereum/Polygon)

✅ Shipped

SmartContract mandate deployment via eth_tester/Sepolia. IPFS metadata storage. Immutable on-chain audit trail for AI spending.

Pro+ v5.0
CM-42

Multi-Agent Procurement Auction (Claude/Gemini/GPT)

✅ Shipped

Parallel vendor proposals from 3 AI providers. Supplier risk scoring. Winner selection by composite score.

Community Business+ v5.0
CM-43

Tax & Invoice Engine (VAT/GST/Sales Tax)

✅ Shipped

EU VAT OSS, US Sales Tax (50 states), UK VAT, SG GST, AU GST. PDF invoices via ReportLab stored in MinIO.

Community Business+ v5.0
CM-44

FIDO2 Passkeys for AP2 Mandate Signing

✅ Shipped

WebAuthn Passkey registration and authentication. Optional FIDO gate on mandate execution. Phishing-resistant.

Pro+ v5.0
CM-45

shadow-warden-sdk Python Package

✅ Shipped

pip install shadow-warden-sdk. ShadowWardenClient + SecureAgent mixin. Any AI agent gets mandate controls in 3 lines.

All v5.0