How AI is applied across API Evangelist and APIs.io. Read my AI disclosure →
API Evangelist API Evangelist
Discovery
Learnings
Guidance
Toolbox
Alignment
API Evangelist LLC

Verified Digital Agents (VDA) Witness API

The Witness API from Verified Digital Agents (VDA) — 23 operation(s) for witness.

Verified Digital Agents (VDA) Witness API is one of 27 APIs that Verified Digital Agents (VDA) publishes on the APIs.io network, described by a machine-readable OpenAPI specification.

Tagged areas include Witness. The published artifact set on APIs.io includes an OpenAPI specification, API documentation, and an API reference.

This API exposes 23 operations across 23 paths, and defines 7 schemas. It is described by OpenAPI 3.2.0, at version 1.0.0.

Requests are made against a single base URL, https://witness.getvda.ai.

23 operations 23 paths 7 schemas 8 GET15 POST

Metadata

The identity and technical contract details declared by the specification.

Specification
OpenAPI 3.2.0
API Version
1.0.0
Base URL
https://witness.getvda.ai
Authentication
HTTP Bearer
License
Apache-2.0
Resource Areas
1

Authentication & Security 1

Verified Digital Agents (VDA) Witness API declares 1 security scheme for authenticating requests. It accepts HTTP bearer tokens (witnessApiKey).

  • witnessApiKey — API key as a Bearer token. The x-witness-key: header also works.

Paths & Operations 23

Across 23 paths, the API surfaces 23 operations — 8 GET, 15 POST. Each is listed below with its method, path, parameters, and response codes.

Witness 23
POST
/api/witness/test-key
Self-serve: mint an instant SEALED-tier API key (no human in the loop)
postApiWitnessTestKey body → 200400429
POST
/api/witness/renew/challenge
Agent-provable renewal, step 1: get a one-time challenge nonce
postApiWitnessRenewChallenge body → 200429
POST
/api/witness/renew
Agent-provable renewal, step 2: prove control → fresh short-TTL key
postApiWitnessRenew body → 200401429
POST
/api/witness/account/bind-controller
Bind an Ed25519 controller key to an EXISTING account (upgrade to durable)
postApiWitnessAccountBindController body → 200400401409
POST
/api/witness/seal
Seal a governed decision into a signed, hash-chained record
postApiWitnessSeal body → 200400401409413429
POST
/api/witness/seal/hitl-decision
Seal a human-in-the-loop decision (shaped — evidentiary basis required)
postApiWitnessSealHitlDecision body → 200400401413429
POST
/api/witness/seal/agent-action
Seal an autonomous agent action (shaped — evidence and/or parameters)
postApiWitnessSealAgentAction body → 200400401413429
POST
/api/witness/seal/attestation
Seal an attestation (shaped — a fact/state as of a time)
postApiWitnessSealAttestation body → 200400401413429
POST
/api/witness/prepare
Customer-managed custody: prepare a shaped body for local signing (STATELESS)
postApiWitnessPrepare body → 200400401
POST
/api/witness/credentials/issue
Issue an agent admission credential (a sealed attestation)
postApiWitnessCredentialsIssue body → 200400401413429
GET
/api/witness/credentials/{credential_id}
checkvalid — is this admission credential currently valid? (PUBLIC)
getApiWitnessCredentialsByCredentialId 1 param → 200
POST
/api/witness/credentials/{credential_id}/revoke
Revoke an admission credential (issuer account only)
postApiWitnessCredentialsByCredentialIdRevoke 1 param body → 200400401403404
POST
/api/witness/keys/revoke
Revoke an account API key — sealed as a keyrevocation event
revoke_api_key body → 200400401403404
GET
/api/witness/records/{recordId}/issuer
verifyrecordissuer — is a record's signature by the issuer it claims?
verify_record_issuer 1 param → 200404
POST
/api/witness/verify
Independently verify a record or chain (PUBLIC — no key)
postApiWitnessVerify body → 200
GET
/api/witness/records
listrecords — read your own records (account-scoped operational query; account…
getApiWitnessRecords 6 params → 200401
GET
/api/witness/records/{recordId}
getrecord — the FULL signed body of one of your records (reasoning, inputs…
getApiWitnessRecordsByRecordId 2 params → 200401404
GET
/api/witness/chains/{chainKey}/proof
Whole-chain OFFLINE proof bundle — verify an entire trail with zero Witness…
getApiWitnessChainsByChainKeyProof 1 param → 200401404
POST
/api/witness/report
Article 12 EVIDENCE report from your trail (a compliance artefact, not a query…
postApiWitnessReport body → 200401
GET
/api/witness/usage
This account's seal usage + monthly headroom (Sealed tier includes 5,000…
getApiWitnessUsage → 200401
GET
/api/witness/whoami
Resolve the presented API key to its account + tier (suite-service credential…
getApiWitnessWhoami → 200401429
GET
/api/witness/anchor-status
Anchor coverage for your account/chain
getApiWitnessAnchorStatus 1 param → 200
POST
/api/witness/mcp
Model Context Protocol endpoint (initialize / tools/list / tools/call…
postApiWitnessMcp → 200

Schemas 7

The contract defines 7 schemas that model the data the API accepts and returns. The most detailed are WitnessRecord (10 properties), EvidenceItem (6 properties), Decision (5 properties), SealRequest (4 properties). Each schema is shown below with its type and property counts.

EvidenceItem
object
A content-addressed reference to EXTERNAL system-of-record material. The hash makes it tamper-evident even if ref rots or is swapped.
6 properties 2 required
Clause
object
A cited policy/rule. Capture text/hash where possible — policies drift, and an auditor needs the version in force.
3 properties 1 required
WitnessRecord
object
The signed body + proof. Everything except proof is covered by the Ed25519 signature.
10 properties
Decision
object
5 properties 3 required
GoverningRule
object
4 properties 2 required
SealRequest
object
4 properties 2 required
Actor
object
3 properties 2 required

Specification

The full machine-readable OpenAPI contract behind this narrative.

Source

getvda-ai-witness-api-openapi.yml Raw ↑

Other APIs Verified Digital Agents (VDA) publishes across the network.

VDA Onboarding Agent
Verified Digital Agents (VDA) Agents API
Verified Digital Agents (VDA) Bundles API
Verified Digital Agents (VDA) C2MD Edge API
Verified Digital Agents (VDA) Copilot Studio.yaml API
Verified Digital Agents (VDA) Environments API
Verified Digital Agents (VDA) Genesis API
Verified Digital Agents (VDA) GOSCE Portfolio API
Verified Digital Agents (VDA) Governance.md API
Verified Digital Agents (VDA) Health API
Verified Digital Agents (VDA) Healthz API
Verified Digital Agents (VDA) Livez API
Where this information came from

This is an independent, third-party profile of Verified Digital Agents (VDA) Witness API, published by API Evangelist. We do not operate, host, resell, or support these APIs, and we are not affiliated with or endorsed by the company unless stated above. Everything here is built from publicly available information — the company's own site, developer portal, documentation, public repositories, and the specifications it publishes for public use. Nothing is obtained by breaching a system, defeating an access control, or using credentials.

The Kin Score and Agent Readiness rating are independently calculated assessments of a company's public API artifacts, scored against a published rubric. They are not certifications, endorsements, security assessments, or audits.

Corrections, re-scores, and removal are free — no partnership or purchase required, and you do not need to justify the request. A removed company is recorded as unrated, never scored zero for having asked. Acknowledgement within one business day; removal within two.

info@apievangelist.com · Read the full data-sourcing policy →
On a security or compliance team? Put security in the subject line and you will get a person, not a form — we will tell you exactly which public URLs this profile was built from.