Skip to main content
POST
Refresh agent snapshot

Authorizations

Authorization
string
header
required

Bearer token in the Authorization header. Two token types are accepted:

  • Organization API key (sk_...) issued via the dashboard. Org-scoped, long-lived, for server-to-server use.
  • User JWT obtained via the OAuth 2.1 authorization code flow with PKCE. User-scoped, short-lived. Discover the authorization server at /.well-known/oauth-authorization-server and the protected-resource metadata at /.well-known/oauth-protected-resource/api.

Path Parameters

encodedUrl
string
required

URL-encoded agent URL

Example:

"https%3A%2F%2Fvastlint.org%2Fmcp"

Response

Snapshot refreshed

online
boolean
required
tools_count
integer | null
required
response_time_ms
integer | null
required
inferred_type
string
required

Type inferred from discovered tools (sales, creative, signals, governance, etc.) or 'unknown'

type_promoted
boolean
required

True when registry type was upgraded from unknown to inferred_type

oauth_required
boolean
required
checked_at
string
required
compliance
object
required

Compliance re-run summary. The capability/health portion of the response is independent of this block — a failed compliance run still returns the rest of the snapshot.

error
string