Agent builders
See which documented actions become potential agent tools.
Capability Mapper · MAP
Capability Mapper translates each documented OpenAPI operation into deterministic capability metadata: access type, risk tags, authentication state, permission alternatives, and sensitive-data context.
Input → output
The mapper reuses the canonical OpenAPI operation surface. One capability represents one documented path and HTTP method.
openapi.yamloperation → capabilityagent-capabilities 1.0Example result
This illustrative result shows the shape of output, not customer data or runtime proof.
Use cases
Use the inventory during agent tool design, AppSec review, API contract review, or as the foundation for Readiness.
See which documented actions become potential agent tools.
Review destructive, privileged, financial, object-access, and sensitive-data tags.
Find missing or unclear security metadata in the contract surface.
Capability Mapper is a one-time Agent Security purchase with the capability_mapper entitlement.