AApt Commerce
Sign inGet started
Show for

Surfaces → JSON-RPC (internal)

JSON-RPC (internal commands)

The internal command engine. Mounted at /internal/rpc. Used by orchestration code, provider adapters, and AI tools. Not a public API — it evolves faster than REST and is not version-frozen.

Method shape

Methods are named domain.action. Each declares scopes, side-effect class (read_only, draft_only, write_safe, money_movement,security_sensitive), idempotency requirement, and AI access policy (read, draft, approval_required, denied).

Rules

  • Money-moving methods require an idempotency_key param.
  • AI tools may only invoke RPC methods consistent with their declared aiAccess.
  • REST handlers must not import RPC handlers directly — both call shared application services.