Orrery.

Trust center

Public endpoint terms

Use the public endpoints only through their declared, bounded tool contracts and applicable law. This page describes the current service boundary; it does not grant authority beyond a tool's stated result.

  • Do not treat an Orrery result as authorization to deploy, publish, spend money, or make another irreversible decision.
  • Do not probe, scrape, or circumvent endpoint limits outside the documented interfaces.
  • Verify signed Envelopes with the published public key before relying on a result.
  • Protect artifact URLs as receipt-holder capabilities while they are live.

Availability, source freshness, and scope are reflected in each capability's own receipt and policy. When an upstream source is unavailable, a correct result may be incomplete rather than affirmative.

  • Public Star and constellation results are signed Ed25519 Envelopes; public keys are at /.well-known/orrery/keys.json.
  • Durable artifact downloads are authorized by stored metadata and expire after 15 minutes.
  • Public Stars expose bounded declared tools; Orrery does not provide arbitrary shell or filesystem execution.