This fictional sample uses no live tenant, buyer, merchant, or provider data. It shows how a compatible MCP client could request a comparison while the Commerce Sales Agent evaluates cached OACP artifacts and returns a non-executing handoff or refusal.
Click any step to see details. The flow is intentionally non-executing until separate Grantex and production approvals exist.
User ChatGPT MCP Server AgenticOrg API Commerce Agent Review | | | | | | | "Compare | | | | | | earbuds" | | | | | |──────────────>| | | | | | | list_tools() | | | | | |──────────────>| | | | | | [safe tools] | | | | | |<──────────────| | | | | | | | | | | | run_agent( | | | | | | commerce, | | | | | | earbuds) | | | | | |──────────────>| | | | | | | POST /a2a/tasks | | | | | | Bearer ao_sk_... | | | | | |─────────────────>| | | | | | | validate API key | | | | | | extract tenant | | | | | | | | | | | | invoke LangGraph | | | | | |───────────────────>| | | | | | | read cache | | | | | | check TTL | | | | | | verify rev | | | | | | | | | | | | source refs | | | | | | handoff? | | | | | |──────────────>| | | | | | | | Review: "Prepared handoff only; no execution" | | | |<──────────────────────────────────────────────────────────────────────────────────────| | | | | | | | [Review] | | | | | |──────────────────────────────────────────────────────────────────────────────────────>| | | | | | | | | | | | no execute() | | | | | |<──────────────| | | | | | | | | | | safe result | | | | | |<───────────────────| | | | | 200 OK | | | | | |<─────────────────| | | | | result JSON | | | | | |<──────────────| | | | | "Grounded options returned; | | | | checkout/payment blocked" | | | | |<──────────────| | | | |
Commerce answers come from valid cached artifacts or Grantex authority paths. The agent does not call direct provider, merchant-private, checkout, or payment rails.
Human review can acknowledge source/freshness limits, but it does not override revocation, stale evidence, or missing approval gates.
Compatible MCP clients can use the governed tool surface when transport, authentication, versions, scopes, and tenant configuration are supported and tested.
Live checkout, live payments, public discovery, provider rails, and merchant-private APIs stay blocked until separately approved and verified.
Start with a sandbox or fictional sample, verify client compatibility and scopes, and test source checks, refusals, provider outages, and rollback before production use.