{"uid":"cap_ishA-yasTfPnJqVaaAbuM","slug":"memory-withzero-xyz-get-api-v1-attestation-memory-tee-privacy-02e0e832","name":"GET /api/v1/attestation — Memory TEE Privacy Attestation","description":"","url":"https://memory.withzero.xyz/api/v1/attestation","method":"GET","headers":{},"bodySchema":null,"responseSchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["privacy_tier","encryption_at_rest","enclave","residual_risks","verify"],"properties":{"verify":{"type":"array","items":{"type":"string"},"description":"Commands a buyer can run to check the claims against GCP directly."},"enclave":{"type":"object","required":["status","bound_image_digest","workload_identity_pool","kms_grant"],"properties":{"status":{"type":"string","description":"Honest state of the confidential-compute rails."},"kms_grant":{"type":"string","description":"The operator-blindness grant to verify."},"bound_image_digest":{"anyOf":[{"type":"string"},{"type":"null"}],"description":"The ONLY image the DEK-unwrap grant is bound to. Any other build — even validly attested — is denied the key."},"workload_identity_pool":{"type":"string"}},"additionalProperties":false},"privacy_tier":{"type":"string","description":"Current tier per docs/memory-tee-privacy-design.md."},"residual_risks":{"type":"array","items":{"type":"string"},"description":"What this deployment does NOT yet protect against — read before trusting."},"encryption_at_rest":{"type":"object","required":["scheme","kms_key","embeddings"],"properties":{"scheme":{"type":"string"},"kms_key":{"type":"string"},"embeddings":{"type":"string","description":"The disclosed side-channel: vectors stay cleartext so pgvector can search them (closed by Tier B+)."}},"additionalProperties":false}},"additionalProperties":false},"example":null,"exampleRequest":null,"tags":[],"displayCostAmount":"unknown","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"unknown_unparsed","priceSource":"registry","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"1.00","reviews":0,"stars":null,"state":"rated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"unknown","summary":"price unknown","primary":{"kind":"unknown","protocol":"mpp","network":"tempo","amountUsd":null,"per":"call","confidence":"unknown"},"accepted":[{"kind":"unknown","protocol":"mpp","network":"tempo","amountUsd":null,"per":"call","confidence":"unknown"}]},"paymentMethods":[{"uid":"pm_4a20cji_tH3980dExO5hZ","protocol":"mpp","methodType":"crypto","chain":"tempo","mode":"charge","costAmount":"unknown","costPer":"request","priority":0,"asset":null,"unit":"request","depositMicros":null,"planRef":null}],"brandName":"memory.withzero.xyz","brandSlug":"memory-withzero-xyz-mpp","brandBaseUrl":"https://memory.withzero.xyz","brandDocsUrl":null,"whatItDoes":"Returns the current confidential-compute attestation status, encryption-at-rest configuration, privacy tier, residual risks, and GCP verification commands for the memory.withzero.xyz agent memory service.","exampleAgentPrompt":"Can you pull the current attestation report for the memory.withzero.xyz service — I want to see the privacy tier, what encryption scheme is in use, which image digest the KMS grant is bound to, and any residual risks I should know about before I trust it with agent data?","exampleUseCases":[{"title":"Compliance verification before sensitive data storage","prompt":"Before we start storing any customer PII in the memory service, can you pull the attestation report and confirm the current privacy tier, the encryption-at-rest scheme, and whether there are any residual risks we need to document for our security audit?"},{"title":"Independent verification of enclave configuration","prompt":"I need to verify that the memory.withzero.xyz enclave is actually running the image digest we expect and using the right KMS key for encryption — can you fetch the attestation details and also show me the GCP verification commands we can run ourselves to confirm everything?"},{"title":"Pre-flight checks for agent data pipeline","prompt":"Before deploying this agent to production, can you grab the current attestation status for the memory service and flag any side-channel vulnerabilities or known limitations I should account for in how we handle sensitive agent state?"}],"resultDescription":"A JSON object containing: the current privacy tier string, encryption-at-rest details (scheme, KMS key ARN, embeddings side-channel disclosure), enclave details (status, bound image digest, workload identity pool, KMS grant identifier), an array of residual risks the deployment does not yet protect against, and an array of shell commands the caller can run against GCP directly to independently verify all claims.","failureModes":["Service unavailable — enclave or attestation endpoint is temporarily down","Enclave status reflects degraded or non-confidential state — caller should treat data as unprotected","Missing required fields in response if attestation metadata is partially initialized","Network error or timeout reaching memory.withzero.xyz","Bound image digest is null — no image has been bound yet, DEK-unwrap grant is not active"],"whenToPreferThis":"Use this endpoint before storing sensitive data in the memory service to independently verify the privacy guarantees, encryption scheme, and TEE configuration. Prefer this over documentation alone because it reflects the live deployment state, including the currently bound image digest and any residual risks that may have changed since docs were written. Ideal for compliance checks, trust bootstrapping, or automated pre-flight verification in agent pipelines.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":3,"lastUsedAt":"2026-07-29T00:21:24.020Z","lastSuccessfullyRanAt":"2026-07-29T00:21:24.020Z","lastHealthCheckAt":"2026-09-13T18:39:04.926Z","isFirstParty":true}