What the schema set validates
The schema set turns UAI-1 into published validation targets that tools, CI runs, and runtime bridges can apply consistently. The current schema family validates both the shared envelope and the profile-specific body shapes used by the public record.
Current machine-validated envelope
- Identity: version, profile, message ID, source, and target.
- Workflow state: conversation continuity, delivery mode, expiry, acknowledgement, and selected task references.
- Trust posture: channel, auth scheme, principal, selected credential reference, and selected replay-window hints.
- Auditability: provenance, integrity, and controlled extension metadata.
Current schema families
uai.intent.request.v1validates request-side intent, subject, constraints, and response expectations.uai.intent.response.v1validates result-side status, request linkage, notices, and selected task handoff.uai.capability.statement.v1validates discovery-facing operations, profiles, endpoints, and security schemes.uai.error.v1validates typed public failures with status, code, detail, and structured sub-errors.uai.conformance.result.v1validates exported validator evidence and artifact references.uai.task.status.v1validates async progress, state, result references, and update notes.
What the schemas do not do alone
Schemas are necessary but not sufficient. The validator still applies policy checks such as delivery expiry, trust-reference hints, accepted-response task references, task-status progress consistency, and conformance-summary integrity. The written record still carries semantic intent and support-boundary meaning.
Published schema catalog
Use the catalog below when you need the exact current schema documents that the validator and examples are built against.
Schema catalog
Published UAI-1 schema records
Each profile links to its current schema, example, and registry record.
uai.agent.blocker.v1
UAI Agent Blocker v1
Blocker packet for authorization, resource, ambiguity, system fault, missing context, unsupported capability, validation, secret, destructive-action, and boundary conflicts. Uses the canonical UAI-1 envelope; agent runtimes execute and UAIX records the reviewed communication boundary.
uai.agent.final-report.v1
UAI Agent Final Report v1
Final report packet requiring complete task evidence, files, tests, skipped checks, blockers, risks, memory decisions, and exact next action. Uses the canonical UAI-1 envelope; agent runtimes execute and UAIX records the reviewed communication boundary.
uaix.memory-firewall-policy.v1
UAIX Memory Firewall Policy v1
UAIX Memory Firewall Policy v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.no-op-trigger-catalog.v1
UAIX No-Op Trigger Catalog v1
UAIX No-Op Trigger Catalog v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation-packet-summary.v1
UAIX Evaluation Packet Summary v1
UAIX Evaluation Packet Summary v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.expression-concept-review.v1
UAIX Expression-Concept Review v1
UAIX Expression-Concept Review v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.resource-economy-trace.v1
UAIX Resource-Economy Trace v1
UAIX Resource-Economy Trace v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.no-op-justification.v1
UAIX No-op Justification v1
UAIX No-op Justification v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.local-sandbox-safety-review.v1
UAIX Local Sandbox Safety Review v1
UAIX Local Sandbox Safety Review v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.memory-ecosystem-handoff.v1
UAIX Memory Ecosystem Handoff v1
UAIX Memory Ecosystem Handoff v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.evaluation.de11-benchmark-summary.v1
UAIX DE11 Benchmark Summary v1
UAIX DE11 Benchmark Summary v1 profile for UAI-1 review packets. UAIX records are schemas, profiles, handoff packets, and conformance evidence. They do not authorize execution, prove safety, validate credentials, or certify agent intelligence.
uaix.multi-agent-workload.v1
UAIX Advanced Multi-Agent Workload v1
Portable configuration, logical identity, authority boundaries, recovery guidance, and reviewed evidence for advanced multi-agent workloads. Runtime systems retain authentication, lease, queue, transaction, database, tool, and delivery authority.
uaix.advanced-persona.receiver-readiness.v1
UAIX Advanced Persona Receiver Readiness v1
Noncanonical, digest-bound receiver projection for manually loading one immutable Advanced Persona package into a named chatbot runtime. The closed 31 source plus five evidence records remain unchanged and outside this support record.
uaix.spec-01.envelope.v1
UAIX SPEC-01 Canonical Envelope v1
Publication-envelope contract for portable evidence-bearing UAIX records, including payload, evidence, redaction, trust, signature status, verification, exceptions, and warnings. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.capability-profile.v1
UAIX Capability Profile v1
UAIX capability profile for declaring L0-L6 client posture, consent boundaries, fallback behavior, evidence requirements, and safe default behavior. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.capability-ladder.v1
UAIX Capability Ladder v1
Machine-readable L0-L6 capability ladder with safe fallbacks, unsupported implication boundaries, and reference-only client scenarios. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.spec-02.project-handoff.v1
UAIX SPEC-02 Project Handoff v1
Portable project memory and custody transfer contract for humans, agents, vendors, future sessions, and reviewed runtime consumers. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.spec-03.agents-md-metadata.v1
UAIX SPEC-03 AGENTS.md Metadata v1
AGENTS.md front-door metadata for canonical roots, nested instruction scope, command policy, memory loading, and safety boundaries. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.spec-04.file-handoff.v1
UAIX SPEC-04 File Handoff v1
Mandatory trusted-work intake contract with evidence-tested content handling, complete per-file lifecycle proof, protected-anchor evidence, and final source removal. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
uaix.public-safe-audit-digest.v1
UAIX Public-Safe Audit Digest v1
Public-safe audit digest for evidence references, redactions, public findings, excluded private material, verification, exceptions, and warnings. Uses the canonical UAI-1 transport envelope; UAIX records evidence and handoff boundaries but does not authorize execution.
Published field registry
The field registry keeps the keyed JSON source record, the keyless transport order, and the nested body/component order aligned across the public contract. Treat it as part of the machine-readable release record, not as a selected convenience note.
Field registry
Canonical keyed and keyless order
Versioned field-order registry for keyed and optimized keyless UAI-1 JSON records, including the canonical UAI-1 agent communication envelope.
| Position | Root field | Required | Meaning |
|---|---|---|---|
| 1 | uai_version | Yes | Declares the active UAI protocol release for the message. |
| 2 | profile | Yes | Selects the exact published message profile. |
| 3 | message_id | Yes | Stable message identifier used for review, tracing, and cross-record references. |
| 4 | source | Yes | Describes the sender or producing system. |
| 5 | target | Yes | Describes the intended receiving system, record, or audience. |
| 6 | conversation | Yes | Carries conversation continuity, turn identity, and parent linkage. |
| 7 | delivery | Yes | Carries sync versus async mode, priority, expiry, and acknowledgment expectations. |
| 8 | trust | Yes | Declares trust-channel, authentication, credential, signature, replay-window, verifier, proof, and status hints. |
| 9 | body | Yes | Profile-specific payload content. |
| 10 | provenance | Yes | Carries trace, lineage, issued-at, and model or agent provenance details. |
| 11 | integrity | Yes | Carries checksum, algorithm, and canonicalization information. |
| 12 | extensions | Yes | Lists declared extension namespaces attached to the message. |
uai.intent.request.v1
intentsubjectrequested_profileparametersconstraintsresponse_profile
uai.intent.response.v1
statussubjectrequest_message_idresultnoticestask_ref
uai.capability.statement.v1
capability_idversionoperationsinput_profilesoutput_profilesasync_profilessecurity_schemestransport_bindingsconformance_levelserror_codesendpointsextension_namespacesimplementation_tracks
uai.error.v1
typetitledetailstatuscoderetryableinstanceerrorsnext_stepuaixCodeuaixCategoryuaixSeverityretryAfterUtcretryAfterMsrateLimitblockedByPolicyblockedByNetworkbindingStatusconstraintViolationschemaPointerpayloadPointerfieldlinecolumnexpectedactualallowedValuesdocumentationUrlsafeHarborUrlsupportReferenceevidenceRefstraceIdcorrelationIdevidenceRecommendedsuspensionRecommendedredactionApplied
uai.conformance.result.v1
statuschecked_profileissuessummaryartifactstarget_message_ref
uai.task.status.v1
task_idstatesubjectprogressstatus_messageresult_profileresult_refblocking_reasonsupdated_fields
uai.agent.message.v1
message_typecontentcontext_refsrequires_acknowledgementintent_semanticsaction_typeexecution_constraintssupport_boundary
uai.agent.ack.v1
acknowledged_message_idstatusreceived_at_utcrejection_reasoncloses_acknowledgement_loopsupport_boundary
uai.agent.task-status.v1
task_idstatepercent_completecurrent_actionestimated_completion_utcsupport_boundary
uai.agent.blocker.v1
blocker_idblocker_typedescriptionhuman_review_requiredproposed_resolutionsupport_boundary
uai.agent.memory-proposal.v1
proposal_idsource_typeproposed_factsproposed_statustask_execution_separationreview_requiredsupport_boundary
uai.agent.handoff.v1
task_idtarget_agent_idcontext_summaryhandoff_reasonexact_next_actiondelegated_authorizationsupport_boundary
uai.agent.final-report.v1
task_idsummaryfiles_changednew_filestests_runskipped_checksblockersrisksvalidation_evidencememory_updates_proposedmemory_updates_skippedexact_next_actionsupport_boundary
uai.agent.correction.v1
original_message_idcorrection_reasonchanged_summarycorrected_fieldsrevised_payloadsupport_boundary
uai.capability.profile.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.capability.negotiation.v1
negotiation_idrequested_client_levelobserved_client_levelselected_client_levelselected_profilerequested_operationunsupported_featuresfallback_behaviorconsent_boundariesevidence_requirementsrecommended_uaix_profilessafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.limited-browser.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.structured-fetch.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.browser-assisted.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.tool-agent.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.workflow-agent.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.multi-agent-runtime.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uai.client.audited-agent-system.v1
client_levelclient_namecan_fetch_staticcan_fetch_jsoncan_execute_javascriptcan_use_browser_uican_post_datacan_authenticatecan_call_toolscan_run_long_taskscan_store_memorycan_coordinate_agentsrequires_human_consent_forrecommended_uaix_profilesfallback_behaviorknown_limitsevidence_requirementssafe_default_responsesupport_boundarycarcinus_boundarylocalendpoint_boundary
uaix.ability-profile.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.startup-packet.v1
startup_packet_idread_orderdomain_boundariesfirst_acceptable_responseno_op_triggersvalidation_targetsidentitytoken_custodydiscovery_bootstrapsafe_harborutc_requirements
uaix.memory-maintenance.v1
uai_versionprofileschema_versionrequirementgovernanceprotected_pathsvalidationrecommendation_boundaryprovenance
uaix.next-recursive-prompt.v1
uai_versionprofileschema_versionscopelifecycleactivation_policyobjectiveauthoritative_refsresume_contextnext_loopcheckswriteback_policysecuritycold_memoryintegrityprovenance
uaix.suspension-packet.v1
suspension_packet_idstate_summarychecks_runchecks_skippedblockersnext_safe_stepnetwork_obstructionretry_policyevidence_packethuman_escalation
uaix.receiver-brief.v1
receiver_brief_idread_orderfirst_acceptable_responsedomain_boundariesescalation_triggersno_op_triggers
uaix.memory-firewall-policy.v1
policy_idquarantine_defaultadoption_requirementsblocked_requestsno_op_triggershuman_review_required
uaix.no-op-trigger-catalog.v1
catalog_idtriggersdefault_responsehuman_review_urlforbidden_recovery
uaix.authority-boundary.v1
matrix_idboundariesnot_authorized_forno_op_triggerssafe_quote_summary
uaix.conformance-evidence.v1
evidence_idprofile_idschema_urlfixture_urlchecksresultlimitations
uaix.evaluation-packet-summary.v1
summary_idpacket_profilesrequired_levelsno_op_triggerslimitations
uaix.ability-profile.l0.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l1.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l2.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l3.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l4.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l5.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.ability-profile.l6.v1
ability_profile_iddeclared_levellabelcapability_surfaceauthority_boundaryrequired_human_approvalno_op_triggersevidence_requirements
uaix.evaluation.expression-concept-review.v1
source_expressionconcept_boundaryinterpretationconfidenceno_op_triggers
uaix.evaluation.resource-economy-trace.v1
resource_scopecost_modellimitsevidence_refsno_op_triggers
uaix.evaluation.operator-decision.v1
decisionauthority_basisoptions_reviewedhuman_review_requiredno_op_triggers
uaix.evaluation.no-op-justification.v1
triggerreasonmissing_evidencehuman_review_urlsafe_next_step
uaix.evaluation.local-sandbox-safety-review.v1
sandbox_scopeunsafe_requestsblocked_operationsreview_resultno_op_triggers
uaix.evaluation.memory-ecosystem-handoff.v1
source_memoryquarantine_statuspromotion_targetsconflictsreceiver_brief
uaix.evaluation.de11-benchmark-summary.v1
benchmark_idbounded_scopereference_resultlimitationsnon_claims
uaix.package.v0.1
uaixVersionpackageFormatpackageIdprofileIdstatuscreatedUtcissuerdeclaredScopesentrypointsfilesintegritysupportBoundary
uaix.persona.v1
uai_versionprofileschema_versionrequirementpersonapreservationboundariesswitchingprovenance
uaix.persona.storage-binding.v1
profileIdstorageModeprofilepackage_identitypersona_identitypackage_idpersona_idfile_first_primaryfile_first_boundarystorage_binding_boundarycanonical_path_registryprofile_required_filesevidence_filesdepth_dimensionsrecordsdigest_rolesround_trip_receiptauthorization_boundaryimport_export_rulesround_trip_receipt_shapememory_layeringsupport_boundarymemoryendpoints_reference_adapter
uaix.multi-agent-workload.v1
enabledprofileworkload_classworkload_labelsetup_modedeclared_surfacesdeterministic_activationroot_manifest_pathportable_authority_policyauthorityagent_rosterwork_allocationcoordinator_and_deliverydatabase_npc_identityruntime_ownershipoffline_continuitygenerated_filesvalidationsecret_boundary
uaix.spec-01.envelope.v1
uaixVersionspecenvelopeIdcreatedUtcissuerissuerDisplayNameissuerPublicUrlissuerCapabilityLevelaudiencelifecycleStatetrustPosturepayloadTypepayloadSchemapayloadevidenceredactionssignaturesignatureStatusverificationexceptionswarningsrulessupportBoundarylocalPolicyWins
uaix.capability-profile.v1
capabilityProfileIdprofileVersiondeclaredLevelsupportedLevelscapabilitiesconsentRequiredForfallbackssafeDefaultResponseevidenceRequirementssupportBoundarylocalPolicyWins
uaix.capability-ladder.v1
ladderIdlevelsfallbackRulessafeDefaultResponsereferenceExamplessupportBoundarylocalPolicyWins
uaix.spec-02.project-handoff.v1
projectIdhandoffIdcreatedUtcownercustodianfrontDoormemoryRootsrequiredReadscurrentStateconstraintsdecisionsnextActionstargetedChecksevidenceredactionswarningsreferenceScenariossupportBoundarylocalPolicyWins
uaix.spec-03.agents-md-metadata.v1
repositoryIdcanonicalRootagentsMdPathcoordinatorPathlocalUaiRootnestedScopesrequiredReadscommandPolicyforbiddenOperationsmemoryPolicysecurityBoundariesexamplessupportBoundarylocalPolicyWins
uaix.spec-04.file-handoff.v1
handoffIdcreatedUtcintakeAuthorityliveIntakeScanintakeBucketsfileManifestreviewDispositionsfileOutcomesfinalIntakeScanintakeCompleteanchorEvidenceredactionPolicylifecyclepreservationPolicyevidenceblockedFileRulessupportBoundarylocalPolicyWins
uaix.review-receipt.v1
receiptIdreviewedEnvelopeIdreviewedUtcreviewerreviewResultchecksRunchecksSkippedwarningsexceptionstrustDecisionsupportBoundarylocalPolicyWins
uaix.public-safe-audit-digest.v1
digestIdsubjectcreatedUtcscopeevidenceRefsredactionspublicFindingsprivateMaterialExcludedverificationexceptionswarningssupportBoundarylocalPolicyWins
uaix.redaction-policy.v1
policyIdcreatedUtcappliesTosecretPatternsdataClassesredactionActionsreviewRequiredForneverPublishverificationexceptionswarningssupportBoundarylocalPolicyWins
How to use this section
- Choose the profile you want to support and resolve its schema.
- Check the matching Registry entry and the public field registry before implementing compact transport or body-order assumptions.
- Run the Validator with a published Example or candidate message and keep the result with release evidence.
- Carry any release-facing change into Implementations, the Changelog, and References and Contributors.
Next step
Continue to Registry for the stable profile map, compatibility cues, and schema-to-example links behind the current release.
Architecture proposals
UAI-1 v1.0 remains the current published contract. Explore separately versioned proposals for independent exchange, capabilities, recovery and source preservation.
Proposed designs and local reference examples; hosted runtime services and independent interoperability are not claimed.
The English proposal is the source for normative interpretation.
Read the architecture proposals · Machine-readable proposal catalog