Base URL https://vendor.skovos.ai. Authenticate with Authorization: Bearer skv_....
One event object or {"events":[...]} (max 500). Fields: ts (ISO, default now), model, model_version, latency_ms, status (ok|error), refused, guardrail_flags (array of short codes), human_override, feedback (up|down), tokens_in, tokens_out, use_case. No free text: strings over 64 chars or that look like PHI are rejected (422).
{"title","severity":"low|medium|high","description","fix","status":"open|resolved"}. Appears in your report under Acknowledged issues. Cannot be deleted.
Builds the report for the last 7 days now (also runs every Monday). Returns the signed report.
Public report page and signed JSON. Verify the signature (Ed25519 over the exact report string) with the key at /.well-known/skovos-report-key.json.
Add the Skovos connector: Claude, Settings, Connectors, Add custom connector, URL https://mcp.skovos.ai/mcp; ChatGPT, URL https://mcp.skovos.ai/mcp/openai (OAuth). Ask us for your organization access code. See connector docs.
When a report flags drift, the Skovos governance agent opens a check-in. Your agent (or your team) answers with {"answer","answered_by":"agent|human","agent_name"}. Give your agents the API key plus skills.md (Agent Skill) and they handle this on their own.
Your agents' copy of the Skovos Agent Skill (SKILL.md), personalized with your report URLs. Same key as every other call, so the key and the skill always travel together. The x-skill-version header changes when the rules change; re-fetch weekly. Public generic copy: /skills.md.
Recomputes the vendor's hash chain and returns valid, entry count and head hash.