{"_id":"@veid/agent-identity","_rev":"27-01cf6b23af81bfcb5525e8e9c192b6eb","name":"@veid/agent-identity","dist-tags":{"latest":"0.27.0"},"versions":{"0.1.0":{"name":"@veid/agent-identity","version":"0.1.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.1.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"4022f29a976f25a186f44aa21beb6fbce824046d","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.1.0.tgz","fileCount":266,"integrity":"sha512-PSVRomgxQZ8C8Xd/IUqT0+ydtPVmHN8VP/nXYPFZt1rIj4uoDQZ37b3DSYfZBPLpLqx5vmrp6AslbcrofvaRlg==","signatures":[{"sig":"MEQCIAwVbChsQEayxqgai92s0qvPdrlUovk8BKxBTiaP/LC+AiAcHcroEdLDGkoxUgJNxyVwyHBYa0Pe6NoP897Sy9d4TA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":816307},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"89efe70b843e33bd0284be69bce9e44ace8f0f46","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.1.0_1773200952713_0.8593712839211789","host":"s3://npm-registry-packages-npm-production"}},"0.2.0":{"name":"@veid/agent-identity","version":"0.2.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.2.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"044271f3d7bfbeb3e30a97a87c58a7ce86e7661d","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.2.0.tgz","fileCount":282,"integrity":"sha512-qLzDlo6n3mrlnghLdPmxtAf2vkP5C2nzuhSNsciwkduD0GvrpffHc/THox0vM2ZNDeCFQkOoRc0tigFQrZZIXg==","signatures":[{"sig":"MEQCIHXG+4SpoSxvcAqIc3OkxW8FIbydvPmHenvMNaNKS9xTAiAKgNxP0oISQHrDr5Z4eE1fglegg8C/QJT46VxWDNHV0w==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":907865},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"d4888de52ec1edb919d919796825aeaea17b1a6d","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.2.0_1773228411768_0.6888935961740288","host":"s3://npm-registry-packages-npm-production"}},"0.3.0":{"name":"@veid/agent-identity","version":"0.3.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.3.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"6a8c0075eb6a8de74f12efdcdd6c00e57b624d8a","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.3.0.tgz","fileCount":282,"integrity":"sha512-/CTozrCWMByqS5ID8No0F6mdt/7k3iv3K9splxTwyTb+nw3MaA6JFm1V/qFdu0lSpB8Zsqa11n/GSqF1FsCvUQ==","signatures":[{"sig":"MEUCIFKuLNF/LA2cSAsoZJQNvWakqpqi9nTE+xxnCsguLX62AiEAr5Xwv81AcSFI4fkcr8okzYyag81JBscjGWrANm9CRxI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":924551},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"f54fab359fe756110c685603f568317dbdd64606","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.3.0_1773374448677_0.6270365281421333","host":"s3://npm-registry-packages-npm-production"}},"0.4.0":{"name":"@veid/agent-identity","version":"0.4.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.4.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"146a796a337aebb379b580b3008832e366add8f6","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.4.0.tgz","fileCount":282,"integrity":"sha512-miPPj99oY7QqIk/AYcP/F1u8Hq2UJAmfDdumImZGjlPpXvXsUEWgiAhEXztbGw84+i78U6n/71J2j+D9RUPvEQ==","signatures":[{"sig":"MEQCIHXCqByvnbUTWSOBObOWBj1pScAQNai3OUYjHrXB2MaHAiA4aMJ5ubD+eGNTaOUYZrakVylN4zYHzuEJdx10O0Wt2A==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":923772},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"ee7ed35a10bb1c48e502201793293b5e05597a4d","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.4.0_1773380857646_0.9944311024264776","host":"s3://npm-registry-packages-npm-production"}},"0.5.0":{"name":"@veid/agent-identity","version":"0.5.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.5.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"b6dc0cd28caea138efda6b73c54ba6dbbaf1fb1f","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.5.0.tgz","fileCount":282,"integrity":"sha512-f4qsVHz+dKS9M9Ro+0Dq/3uzruKI6/ZRLBH7dF4MwwgBhLqTkGTTWuwP9uq6ekGcr/M8arIaxF8jawk9qRVK/Q==","signatures":[{"sig":"MEUCIQDuEMWC7JdLZD8YJbQ/uBvfQrLF8c/7weB6gbh/P7ogzwIgCav63Pm/LfaePfAt8MQDIMc2UcUiOaJdQ5W+CozotMk=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":924285},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"12953a344bdecd01bf2df1118cd5a34ea26a8a9e","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.5.0_1773405007508_0.4269173651711258","host":"s3://npm-registry-packages-npm-production"}},"0.6.0":{"name":"@veid/agent-identity","version":"0.6.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.6.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"d15de9c1e4bbab1b43bcdadcf0c0267ed17b9527","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.6.0.tgz","fileCount":282,"integrity":"sha512-1/ItuSwY2QuD6z59pfZOaVhUD5gztFeiVbZvFREb6rLt/RYxDETpSI3/bMQGk/c/Kteiy/pv5utop8cLdZRAiQ==","signatures":[{"sig":"MEUCIDAFz9utNQ2YletZWtxnvgDpgDcTDMu0YJz5Aa03IDDAAiEAuko1fUP8HRbDtiQrKcYmqZLzRPdnL1/5r9ITZfPgocY=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":924689},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"16f214a75f61d03decb4f07dd15e8274136d31f4","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.6.0_1773416910398_0.4305127558048707","host":"s3://npm-registry-packages-npm-production"}},"0.7.0":{"name":"@veid/agent-identity","version":"0.7.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.7.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"dea3245a0ddf0ed99e10c5c99724b7ce4b62c5a6","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.7.0.tgz","fileCount":282,"integrity":"sha512-ANCNxjMD7/cKaDK2fdVxmTeUKCQNG+hFTcKF1u8jNXoPXqsNnSUTxRBmwJ8Vz+9r8ZyDzKpXQRYnPV9aV1reIg==","signatures":[{"sig":"MEUCIQDD9513xpYOPg7DHSyuizp45jaXVZAHcXjiU+pbaUJSSwIgRH2PAwa/IZYNRM3C1fnVJCGU720gOUCX1+ITuWATRtk=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":924690},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"16f214a75f61d03decb4f07dd15e8274136d31f4","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.7.0_1773454545959_0.08445266934775963","host":"s3://npm-registry-packages-npm-production"}},"0.8.0":{"name":"@veid/agent-identity","version":"0.8.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.8.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"bb28c9e949b1c21beb5bfebf07395baf03e60e18","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.8.0.tgz","fileCount":282,"integrity":"sha512-9TxEN+75Ru8vVufrQGbEyS+W4GqIzKNMBcFYkCDez132RPlpvmjyxuNQ22RoxlVyZ03qH7k1RwDnhn2l1RvM/Q==","signatures":[{"sig":"MEQCIAYIacUX87BKibSOLoq7afCeruN0TBS/arhujcC9UDRLAiAk47NFcHqqukdJIskXo9ULZJ/v0UkOrpxx8+h7zXAaaA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":932528},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"de2b31390445ebe5eb97f6ad5b4a6cd95335be7e","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.8.0_1773473920154_0.41257927756335167","host":"s3://npm-registry-packages-npm-production"}},"0.9.0":{"name":"@veid/agent-identity","version":"0.9.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.9.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"00e97c44773f22c40a35ad7d57893765a5581123","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.9.0.tgz","fileCount":290,"integrity":"sha512-9wWdoaAf7EF64pL+ECAvedpnSCcaxJXVKUSLAhvGuJ5/ZGwAGNmJthFcfSoahEZOV3IjMMImakIn1Qllb1CVlQ==","signatures":[{"sig":"MEUCIQCNdAWc1ta8lbvUGSZMFA5GsjVLr5rmS30xCQLAC1bQ6AIgbFcn9rNoYNoNicp7hyCbg71lhDwe+HtKxuk9/KEy4ck=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":955970},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"460c33ae1c2fef0e7b6b08888478474e6d461ed4","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.9.0_1773587077687_0.9760095293550959","host":"s3://npm-registry-packages-npm-production"}},"0.10.0":{"name":"@veid/agent-identity","version":"0.10.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.10.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"4caa487432a9d3cb9466206cc57b6078c0128424","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.10.0.tgz","fileCount":290,"integrity":"sha512-UtgUfzeVuxnGoPO9WPAIjEb3TQcHfGuq/NPo+rZdzEYlfFQziefm+wGZS5zLhGCFdjSeX4FOaJKjn3H9c6xZ/Q==","signatures":[{"sig":"MEYCIQDl0UJlnwXLQUl7/cO3QXCYJAbRekfxXHSIAAyw7a99HgIhAP8sWX6FhQDbW6aq4Qo4jx4KqOfTWjKV+i+iDHemQmwk","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":957398},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"6cc190c64f996b10fff6c4b00fbf4141346e5941","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.10.0_1773588043818_0.7568353496299405","host":"s3://npm-registry-packages-npm-production"}},"0.11.0":{"name":"@veid/agent-identity","version":"0.11.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.11.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"0d7742b80f36ef189883a3894c0f2eea2a0d710e","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.11.0.tgz","fileCount":290,"integrity":"sha512-IY4vsE03No1eY2YqVsmuWf16jI6buNCvUXiMRtRWy1c7Rk1uWZQnCV4oecqqlFtYdYGAnNtDrqYyAQp8qUNCmA==","signatures":[{"sig":"MEYCIQDXQJ649L7DN4As5GQXpUosBbZoWZdc47pwVgFbaw0ISQIhAMQBu/ltlNBxTKAVwY4iQTBftqZ9/z8gxq6669o5B4WH","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":957873},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"837fdcfbf1559a81db1f1db5f73e368031deec4d","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.11.0_1773589619087_0.35028637730936274","host":"s3://npm-registry-packages-npm-production"}},"0.12.0":{"name":"@veid/agent-identity","version":"0.12.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.12.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"012b11b7de7037f3b5115b21329b608d5833d063","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.12.0.tgz","fileCount":290,"integrity":"sha512-A9HpABHiOq2Y6QHKkeHUs5uWt/Ntwv7Ohr8Yv//pIcxVamEsteXzqcwgvC2oTCvzHBUJ/HIyhEM5Qbu2Y/AIjA==","signatures":[{"sig":"MEUCIQCUeSpU0ihCil2cJd7YZYLdjIUETcl6vGeRtBQP5bx1aAIgEldNk5hB9lR8mryUPDNwGH8uEozBwLCPu6pH32P3mug=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":958604},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"f444b6032253921f16657de9a16f509d35306429","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.12.0_1773630198670_0.7224306020574054","host":"s3://npm-registry-packages-npm-production"}},"0.13.0":{"name":"@veid/agent-identity","version":"0.13.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.13.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"4e2e88bb9599a5e4e385a3f239087b659d8d68fa","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.13.0.tgz","fileCount":290,"integrity":"sha512-GDaq1zyWZlvYM6zU4ZVtA9ejxYZXokKjh3QSt8JX8r4tizwEAoRiFkxwiQTTUoiz0SJ8LFTuPRRhfy5v5G9E9w==","signatures":[{"sig":"MEQCIE4TP5U/t+nJjdvfQRbbQz5T6C3CVyB1EV+jjYwTSpCZAiAdv4URAPXjYL8/2iuoQDObNXNRbFIP7hyBPI2EneMPPg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":958604},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"e83da13ddbf16260d8b985c55f1caf3afff5c4a7","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.13.0_1773633105060_0.9184460712172025","host":"s3://npm-registry-packages-npm-production"}},"0.14.0":{"name":"@veid/agent-identity","version":"0.14.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.14.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"6f5f2b703f793b48cc67c2338d288a907945d88d","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.14.0.tgz","fileCount":302,"integrity":"sha512-thb2qMpcyShr1sSvfG2QPdIVOgmjBgEWQrn/XWRwXll7hpFHIaBG27hAB3dzSZBPo0hjgpoZWwl/YF3TefMw/w==","signatures":[{"sig":"MEQCIFKcZ8GqmqvbfwmbEPE1dUEaiD++SRp/0upoePaoh5QPAiB6aSWP1Lmh66dQEqOpPGV/3msz+Aw37ZG3iDR35zBqzw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":935767},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"8f0ad17a6689bc7f176b310d901a111fd87171d2","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.14.0_1773717897645_0.7988630986451966","host":"s3://npm-registry-packages-npm-production"}},"0.15.0":{"name":"@veid/agent-identity","version":"0.15.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.15.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"072f297ec353943c489f081936f91937d936626e","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.15.0.tgz","fileCount":302,"integrity":"sha512-Gn0ul3TfQ8fEile8QEl7YIEnYXaV0ZQxGfycLDE/xkyeN0UQUJ0hStlwoRNjgCa2zE2Iczjb7G83nEwqXtSnRw==","signatures":[{"sig":"MEQCIGfSNOoB0X9ys3E+Aqks37Rbosc7slvAbqkFonaDAKdpAiA3n5ydAFqi+PJf/ATVMOAi0aFUqPuE6GpQTzvSbInrZg==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":942971},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"08106524db10422f6fc3c4dbb827d7d366531e6a","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.15.0_1773837889664_0.48314266390961813","host":"s3://npm-registry-packages-npm-production"}},"0.16.0":{"name":"@veid/agent-identity","version":"0.16.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.16.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"7c0f36cfd482e07dee430ef3365a81df08b72882","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.16.0.tgz","fileCount":302,"integrity":"sha512-nPjk8/aZlPz+I+YlkTplpKj86NiQNxEdgOT/d021SFeqh/Hxc7kL5tSTEZbDJt2YViy4bDchF3xnIc7X+2ACyw==","signatures":[{"sig":"MEUCIGYc2/cR0jELIJIftvB7iqFUVizJmQiRZJsSLHK2c/l3AiEA/NhYZMW61LQzRWyq1tEf7ntUnzpy0tGEawSQsggO9lE=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":949207},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"90b815bba63bcbd5b19dfc1bf8b36b2149b83a9e","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.16.0_1773851296618_0.2664404460000014","host":"s3://npm-registry-packages-npm-production"}},"0.17.0":{"name":"@veid/agent-identity","version":"0.17.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.17.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"ce365227c8e662ba3a8c3566204029820bc8e8c6","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.17.0.tgz","fileCount":302,"integrity":"sha512-NPA0ecUvdBX5+b6OyRub/uKcTZk/8soHaeV+UcSQZq38AQvoPhdDN54THn0WDEcLOO3Y3od0m6enhleYSJ+5Tw==","signatures":[{"sig":"MEYCIQDxYHr176+kVuX8UtXWm7MQElK92a43JOQG4BgBpJTbJgIhANK6+0cQeblaznwswXX9FTmvfsOdr0iIikK8TaInTHK/","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":948951},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"90b815bba63bcbd5b19dfc1bf8b36b2149b83a9e","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.17.0_1773888614229_0.939449701357522","host":"s3://npm-registry-packages-npm-production"}},"0.18.0":{"name":"@veid/agent-identity","version":"0.18.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.18.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"0a1ee1d437b2f4b10c3c5aa0f91104647f17a7d9","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.18.0.tgz","fileCount":301,"integrity":"sha512-aEkMFptZ5KPiB5nVh1kW6IOV9urNPaq1PcdnGvNNje2ymwoicNqifB7yyjmMAym15HWCWQJI1fog50t6xfThdw==","signatures":[{"sig":"MEUCIFxDpnR0HtaoKSR8YWvlmnn1BaZblcVlARJgfZvPCB8iAiEAx+UbwMVnnTmmKXr9i8ZOxWb3O0XXn94V4NugIkLR4cE=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":928822},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"73cbf52f111c2275603669508bf924f9950c29ea","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.18.0_1773920773819_0.4308257154501751","host":"s3://npm-registry-packages-npm-production"}},"0.19.0":{"name":"@veid/agent-identity","version":"0.19.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.19.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"44f8f65b8618294415e32d34d832d1867dce7aa9","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.19.0.tgz","fileCount":301,"integrity":"sha512-DJzKBwnY3QNcIY0/2pRGZsBOxttvHxwk3l9jZ1X9J7xwm5/rrDfmhCyGoTnQ42CqHR0AI1xzcQTSzPENbnxX8w==","signatures":[{"sig":"MEYCIQDYi/tj0MGKA8qeI/cxSvSqxD/MM7udN2++FA33Gig34QIhAPpKCFZl2CXwD5K+cffT/zqeG1KFkmiq9CAoPQhT0EWH","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":932492},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"32ef2cf8ee5978d883b1066ed33b877b578e636a","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.19.0_1773971415976_0.08249001549046464","host":"s3://npm-registry-packages-npm-production"}},"0.20.0":{"name":"@veid/agent-identity","version":"0.20.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.20.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"25396dee19de0886d8e341ce18f143f343c20b80","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.20.0.tgz","fileCount":301,"integrity":"sha512-IdUg+e5hkZ6Y5HdxkUuVmpj8XYCnyEOsbWiNX6ljtKvUXiw4b1+wfxjRVArObzZFZO5dWFrX1Gf/qdRKiHKLOw==","signatures":[{"sig":"MEYCIQD7n9sWJ/8SHzstj1dpyYmJS7KmkpfexzRrppOpzmQT5AIhAIWP6J9DoLLRC1b89N4sAiomyx2OMvNPEFTPWFAoUgy4","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":932447},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"32ef2cf8ee5978d883b1066ed33b877b578e636a","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.20.0_1773972013805_0.3262958875723956","host":"s3://npm-registry-packages-npm-production"}},"0.21.0":{"name":"@veid/agent-identity","version":"0.21.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.21.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"bc6c91963d25a3ba2c7df46e72ba634d4f35c764","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.21.0.tgz","fileCount":301,"integrity":"sha512-nz6I33z5b/Uiq+g+tzKxilGaJT5ONVOQfb6vM+NX0RNci4q3QCuTxna8toXwJbFgAcaJkl4W6UbdqQlu7/WPLA==","signatures":[{"sig":"MEUCIQCuSlxAWlMEqKcld4duWl676IhILzpBanGaOchtisam4AIgHrHH7GT/9dQKU9yIcRt2R9z5ZHfhubtiWkOzsk4bzq4=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":934149},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"a1678b72adb7c4991e4b703ba4a1d41df98282c0","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.21.0_1773988341960_0.9139547901282432","host":"s3://npm-registry-packages-npm-production"}},"0.22.0":{"name":"@veid/agent-identity","version":"0.22.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.22.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"fd2cf557eb806fc652e36991ef0cf1fb136b2c6e","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.22.0.tgz","fileCount":301,"integrity":"sha512-Ce0mUc5ViyxCe/YoJfF4UrYxdNKgLBIquSNWigf2C6piwylXCIF10cXv0l9aJtLQ9GknpjGFbf7+gIEKZElW3Q==","signatures":[{"sig":"MEUCIQCqeZTTftpFOfcIHBl9OCt/SfrHXJNb58i3CzYYvnfIOgIgIjZDXspUfKFbAEANrPpYo7VJX4ULD8phJogkiE3ac14=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":934492},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"a1678b72adb7c4991e4b703ba4a1d41df98282c0","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.22.0_1773990369830_0.3218602431147297","host":"s3://npm-registry-packages-npm-production"}},"0.23.0":{"name":"@veid/agent-identity","version":"0.23.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.23.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"1175f31fc3831fa469b3d41912d06f8e427c99a6","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.23.0.tgz","fileCount":301,"integrity":"sha512-mxYfrh3IDlvQZHcr4tGdAyyrV0d3638t37nBwRRCrKjsCBliqmxV3VzAZKygSkbsbU6vn6sbS/snrLcddJZI2Q==","signatures":[{"sig":"MEUCIE0TMWbsVAQJxYrxIfvmngPSh3WJEMLmpYMrlqRxdZhzAiEA0QzKGFcyq5LMltVIpcgJeNIl08WQNgX6ysj29OL8EvI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":932069},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"a1678b72adb7c4991e4b703ba4a1d41df98282c0","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.23.0_1773990867580_0.27781539929133214","host":"s3://npm-registry-packages-npm-production"}},"0.24.0":{"name":"@veid/agent-identity","version":"0.24.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.24.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"2ed9daa97689958c0f7633a035e8200c0c477e12","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.24.0.tgz","fileCount":301,"integrity":"sha512-a1Q9IrtFYrR4EO5PDeHhtnLbmOXbcGUi659Wm18ZP3tC7WsGzuQOmpzbIZGMucgdDxsS3tVd/UWunyvXfI2Mxg==","signatures":[{"sig":"MEYCIQD4NEzDlRRanG4XroxYUpWRYpokdrQLHDi7pIClUPHEXQIhALYW2vDlA3uuiVUrrc2cgSZCLpfpeUCyfKEN+uP/kyUu","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":931847},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"a1678b72adb7c4991e4b703ba4a1d41df98282c0","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.24.0_1774007846312_0.8008702671930841","host":"s3://npm-registry-packages-npm-production"}},"0.25.0":{"name":"@veid/agent-identity","version":"0.25.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.25.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"43783ba50e14c3810f8faf842dc4201642364201","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.25.0.tgz","fileCount":301,"integrity":"sha512-22aFxTgklehC8WQnChvT1myUco8FtdxSegM71ufPjOjEMLU4mg45jIycrAJMWXbq654ghvrRnLilNYNrpMguKg==","signatures":[{"sig":"MEQCIDupRN/qplHSY893mQs6qwGjBRbHMdgczMJVnb/jbAlTAiA+HqUZpsaNkV6lgSQOYQVK8XJWP45GscyzRKc8OpMmCA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":932271},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"a1678b72adb7c4991e4b703ba4a1d41df98282c0","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.25.0_1774088479938_0.7783271312002478","host":"s3://npm-registry-packages-npm-production"}},"0.26.0":{"name":"@veid/agent-identity","version":"0.26.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","_id":"@veid/agent-identity@0.26.0","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"dist":{"shasum":"073e40cb17f49b2852ac2f146a5d6f8ba45b1a51","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.26.0.tgz","fileCount":301,"integrity":"sha512-jCH+JKHmjlImsSxIe5LuJIXNbq4ofh15X8pcrdISHD9kVnuii1vEeGmV0zmlz35iWUobIwVh+8I3nBR0jbn0aA==","signatures":[{"sig":"MEUCIQC0OIM8INH3eT1LcjmSAGMHQd3p6KFwt0K8IcN6H0hdwgIgWsARYStlFnM3VYBV8nhseDGTTCUfHKS2Y1LVh8BmqYg=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":933005},"main":"dist/index.js","type":"module","types":"dist/index.d.ts","gitHead":"f191b95086e6c228abbf9faf1dc3673c6920723f","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"openclaw":{"extensions":["./dist/index.js"]},"_npmVersion":"11.8.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","directories":{},"_nodeVersion":"25.6.0","dependencies":{"ws":"^8.17.0","jsonrepair":"^3.13.3","@sinclair/typebox":"0.34.48","@larksuiteoapi/node-sdk":"^1.59.0"},"_hasShrinkwrap":false,"devDependencies":{"vitest":"^4.0.18","@types/ws":"^8.5.10","typescript":"^5.7.0","@types/node":"^22.0.0"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"_npmOperationalInternal":{"tmp":"tmp/agent-identity_0.26.0_1774190293869_0.20459012663255138","host":"s3://npm-registry-packages-npm-production"}},"0.27.0":{"name":"@veid/agent-identity","version":"0.27.0","description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","type":"module","main":"dist/index.js","types":"dist/index.d.ts","scripts":{"build":"tsc","prepublishOnly":"npm run build"},"keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"license":"Apache-2.0","dependencies":{"@larksuiteoapi/node-sdk":"^1.59.0","@sinclair/typebox":"0.34.48","jsonrepair":"^3.13.3","ws":"^8.17.0"},"devDependencies":{"@types/node":"^22.0.0","@types/ws":"^8.5.10","typescript":"^5.7.0","vitest":"^4.0.18"},"peerDependencies":{"openclaw":">=2026.2.21"},"peerDependenciesMeta":{"openclaw":{"optional":true}},"openclaw":{"extensions":["./dist/index.js"]},"gitHead":"2b77ab57387fcf8692e537d10ae9077ee5a6214d","_id":"@veid/agent-identity@0.27.0","_nodeVersion":"25.6.0","_npmVersion":"11.8.0","dist":{"integrity":"sha512-qOF4DU2anuDSYXeTUGJDUtzcb9kQxP2AMtpar9Dddz0XM8GIBS7EGTI3IDw3FxtIcLqP3F3dVfy+jcFA09MTgQ==","shasum":"2641756036625430cd86e6d4c86477a4c22782fd","tarball":"https://registry.npmjs.org/@veid/agent-identity/-/agent-identity-0.27.0.tgz","fileCount":301,"unpackedSize":932473,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEUCIGVnoxLIXqSAYSIEwJuYKyTbg/RzZ8ZtAzVnZYo+u6mKAiEAwmP1ihRcbyvO+Ir0BYzmsl5IEqMPU63OOyjm1sTl1rU="}]},"_npmUser":{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"},"directories":{},"maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/agent-identity_0.27.0_1774597335509_0.44380524345616656"},"_hasShrinkwrap":false}},"time":{"created":"2026-03-11T03:49:12.620Z","modified":"2026-03-27T07:42:15.877Z","0.1.0":"2026-03-11T03:49:12.914Z","0.2.0":"2026-03-11T11:26:51.947Z","0.3.0":"2026-03-13T04:00:48.833Z","0.4.0":"2026-03-13T05:47:37.859Z","0.5.0":"2026-03-13T12:30:07.743Z","0.6.0":"2026-03-13T15:48:30.623Z","0.7.0":"2026-03-14T02:15:46.240Z","0.8.0":"2026-03-14T07:38:40.321Z","0.9.0":"2026-03-15T15:04:37.925Z","0.10.0":"2026-03-15T15:20:43.964Z","0.11.0":"2026-03-15T15:46:59.242Z","0.12.0":"2026-03-16T03:03:18.854Z","0.13.0":"2026-03-16T03:51:45.224Z","0.14.0":"2026-03-17T03:24:57.844Z","0.15.0":"2026-03-18T12:44:49.921Z","0.16.0":"2026-03-18T16:28:16.866Z","0.17.0":"2026-03-19T02:50:14.392Z","0.18.0":"2026-03-19T11:46:13.976Z","0.19.0":"2026-03-20T01:50:16.142Z","0.20.0":"2026-03-20T02:00:14.007Z","0.21.0":"2026-03-20T06:32:22.174Z","0.22.0":"2026-03-20T07:06:10.035Z","0.23.0":"2026-03-20T07:14:27.745Z","0.24.0":"2026-03-20T11:57:26.490Z","0.25.0":"2026-03-21T10:21:20.248Z","0.26.0":"2026-03-22T14:38:14.066Z","0.27.0":"2026-03-27T07:42:15.762Z"},"license":"Apache-2.0","keywords":["openclaw","identity","volcengine","userpool","credential","TIP","auth","agent"],"description":"Agent Identity: UserPool (用户池) login, TIP token (工作负载令牌), credential hosting (凭据托管 OAuth2/API key), optional tool/skill permission control (CheckPermission) and risk approval. Integrates with Volcengine 智能体身份和权限管理平台.","maintainers":[{"name":"qqdxyg","email":"zhangchen.zchen@bytedance.com"}],"readme":"# Agent Identity Plugin\n\nUserPool OIDC login, TIP (Trusted Identity Provider) token via Identity GetWorkloadAccessTokenForJWT, credential 3LO (GetResourceOauth2Token/Oauth2Callback), and session management for OpenClaw.\n\n> 中文文档请参阅 [README-cn.md]\n\n## Features\n\n- **OIDC Login**: `/identity login` returns IdP auth URL (no HTTP start endpoint). User opens URL, IdP redirects to `/identity/oauth/callback`.\n- **TIP Token**: `before_agent_start` hook fetches TIP token when session has a logged-in user\n- **Credential 3LO**: `/identity fetch <provider>` returns auth URL. IdP redirects to Identity-provided callback (control-plane config).\n- **Credential Binding**: `/identity set <provider> <envVar>` binds stored credential to env var. Credentials are injected into `process.env` in `before_agent_start` when tools run.\n- **Dynamic UserPool**: Resolve OIDC config by `userPoolName` + `clientName` (no manual clientId)\n- **Credentials**: Load AK/SK from env, file, or STS AssumeRole (veadk-style)\n\n## HTTP Endpoints\n\nOnly the OIDC login callback is exposed. Credential OAuth uses Identity callback. All other logic runs in slash commands.\n\n| Path                       | Method | Description                              |\n| -------------------------- | ------ | ---------------------------------------- |\n| `/identity/oauth/callback` | GET    | OIDC login callback (IdP redirects here) |\n\n## Slash Commands\n\nSingle command `/identity` (alias `/id`) with subcommands. Default with no args: `status`.\n\n| Subcommand                          | Description                                                                                                   |\n| ----------------------------------- | ------------------------------------------------------------------------------------------------------------- |\n| _(none)_                            | Show help.                                                                                                    |\n| `whoami`                            | Show current session identity (sub, TIP status).                                                              |\n| `login`                             | If logged in: refresh TIP. If not: return OIDC IdP URL to open.                                               |\n| `status`                            | Show login status, TIP, credentials. Tries to refresh TIP when session exists.                                |\n| `logout`                            | Clear session and TIP for current session.                                                                    |\n| `list-tips`                         | List all valid TIP tokens with delegation chain, expiry, and env bindings.                                    |\n| `config`                            | Show identity plugin config (sensitive values redacted).                                                      |\n| `list-credentials` or `list [page]` | List providers from control plane (paginated) and your credentials with bound env. Use `list 2` to load more. |\n| `fetch <provider> [--flow=...]`     | Add credential. Flow auto-inferred from provider type (api_key/oauth2/m2m); override with `--flow`.           |\n| `set <provider> <envVar>`           | Bind credential to env var for tool injection. If no credential, import from `process.env[envVar]`.           |\n| `unset <provider>`                  | Remove env binding for provider.                                                                              |\n| `approve <approval_id>`             | Approve a pending high-risk tool call.                                                                         |\n| `reject <approval_id>`              | Reject a pending high-risk tool call.                                                                          |\n\n## OIDC Login Flow\n\n1. User sends `/identity login` in chat (e.g. Telegram, Discord)\n2. Command derives sessionKey from channel/sender, builds IdP authorize URL, stores state\n3. Command returns the IdP URL; user opens it in browser\n4. User completes login at UserPool IdP\n5. IdP redirects to `/identity/oauth/callback` with `code` and `state`\n6. Plugin exchanges code, creates session, shows success page and sends message to chat\n\n## Credential Fetch Flow\n\n**OAuth2 (user federation or M2M):**\n\n1. User sends `/identity fetch google` or `/identity fetch google --flow=oauth2-m2m` (after `/identity login`)\n2. Command uses TIP to call Identity API; returns auth URL or direct token\n3. If auth URL: user opens it; IdP redirects to Identity callback (control-plane provider config)\n4. Identity handles callback; token obtained via Identity; user may re-run fetch to pull credential\n\n**API Key:**\n\n1. User sends `/identity fetch openai` (provider type api_key in control plane) or `/identity fetch openai --flow=apikey`\n2. Command uses TIP to call GetResourceApiKey; API key stored directly\n\nFlow is auto-inferred from ListCredentialProviders (Type + Flow). Override with `--flow=oauth2-user|oauth2-m2m|apikey` when needed.\n\n## Enable Volcengine Agent Identity Service\n\nBefore using this plugin, you must enable **Agent Identity and Permission Management** in Volcengine and complete authorization. See:\n\n\n## Get Volcengine AK/SK\n\nThe plugin requires Volcengine Access Key and Secret Key to call the Identity API. To create credentials:\n\n\nAfter creating AK/SK in the console, pass them via config or use environment variables `VOLCENGINE_ACCESS_KEY` and `VOLCENGINE_SECRET_KEY`.\n\n## Installation\n\n```bash\nopenclaw plugins install @veid/agent-identity\n```\n\nOr with link for development:\n\n```bash\nopenclaw plugins install --link .\n```\n\n## Configuration\n\n### Step 2: Configure plugin (minimal setup)\n\nThe plugin typically needs three types of config:\n\n**A. Platform access (Identity)**: For TIP Token, credential fetch/hosting, and optional permission checks.\n\n- `endpoint`: Identity API URL (e.g. `https://id.cn-beijing.volcengineapi.com`). Default when omitted.\n- `accessKeyId` / `secretAccessKey`: For Identity API access. **Optional** when using env vars or credential file (see below).\n- `workloadPoolName` / `workloadName`: For issuing TIP Token. Defaults: `default`, `openclaw-agent`.\n- `audience` / `durationSeconds`: Optional, token audience and validity.\n- `credentialsFile`: Path to credential JSON. Default: `VOLCENGINE_CREDENTIALS_FILE` env or `/var/run/secrets/iam/credential`.\n- `roleTrn`: Role TRN for STS AssumeRole. When set, workload name is omitted; backend uses roleName.\n- `sessionToken`: STS session token (or use `VOLCENGINE_SESSION_TOKEN` env).\n\n**Credential resolution order** (AK/SK): 1) Explicit config → 2) Env vars (`VOLCENGINE_ACCESS_KEY`, `VOLCENGINE_SECRET_KEY`, `VOLCENGINE_SESSION_TOKEN`) → 3) Credential file (`credentialsFile` config, or `VOLCENGINE_CREDENTIALS_FILE` env, or `/var/run/secrets/iam/credential`). Credential file format (VeFaaS): `access_key_id`, `secret_access_key`, `session_token` (optional), `role_trn` (optional for AssumeRole). `RUNTIME_IAM_ROLE_TRN` env can supply role TRN when loading from file.\n\n**B. User login (UserPool / OIDC)**: For `/identity login` and session setup.\n\n- `discoveryUrl` (or `userPoolName` + `clientName` for dynamic resolution)\n- `clientId` / `clientSecret` (auto-resolved in dynamic mode)\n- `callbackUrl`: Public callback URL for OpenClaw gateway, e.g. `http://127.0.0.1:18789/identity/oauth/callback`\n- `scope`: Typically `openid profile email`\n\n**C. Tool call AuthZ and risk approval (optional)**: For TIP + CheckPermission + risk evaluation and user approval in `before_tool_call`. Each flag is independent; no single \"enable\" switch.\n\n- `toolCheck`: Run CheckPermission for tools (resource type tool). Default false.\n- `skillReadCheck`: Run CheckPermission for read of SKILL.md (resource type skill). Parses available_skills from system prompt. Default false.\n- `requireRiskApproval`: Require user approval for high-risk tool calls. Default false.\n- `namespaceName`: CheckPermission Cedar policy namespace. Default `default`.\n- `lowRiskBypass`: Skip TIP+CheckPermission for built-in low-risk tools. Default true.\n- `lowRiskTools`: Extra tool names treated as low-risk.\n- `enableLlmRiskCheck`: Use LLM to re-evaluate when rules return medium. Default false.\n- `llmRiskCheck`: LLM config (`endpoint`, `api`, `model`, `apiKey`, `timeoutMs`, `cacheTtlMs`). Required when `enableLlmRiskCheck` is true.\n- `approvalTtlSeconds`: Approval link/command TTL (seconds). Default 300.\n\n**Expected outcome**: After config, the plugin can initiate login and obtain TIP Token. With AuthZ flags enabled, tool/skill permission checks and high-risk approvals apply; use `/identity approve <approval_id>` to approve blocked calls.\n\n---\n\nAdd to `openclaw.json` under `plugins.entries.agent-identity.config`:\n\n```json\n{\n  \"plugins\": {\n    \"entries\": {\n      \"agent-identity\": {\n        \"config\": {\n          \"identity\": {\n            \"endpoint\": \"https://id.cn-beijing.volcengineapi.com\",\n            \"workloadPoolName\": \"default\",\n            \"workloadName\": \"openclaw-agent\"\n          },\n          \"userpool\": {\n            \"discoveryUrl\": \"https://userpool-xxx.userpool.auth.id.cn-beijing.volces.com\",\n            \"clientId\": \"<client-id>\",\n            \"clientSecret\": \"<client-secret>\",\n            \"callbackUrl\": \"https://gateway.example.com/identity/oauth/callback\",\n            \"scope\": \"openid profile email\"\n          },\n          \"authz\": {\n            \"toolCheck\": false,\n            \"skillReadCheck\": false,\n            \"requireRiskApproval\": false,\n            \"namespaceName\": \"default\",\n            \"lowRiskBypass\": true,\n            \"enableLlmRiskCheck\": false,\n            \"approvalTtlSeconds\": 300\n          }\n        }\n      }\n    }\n  }\n}\n```\n\n**Identity credentials**: Omit `accessKeyId`/`secretAccessKey` to use env vars (`VOLCENGINE_ACCESS_KEY`, `VOLCENGINE_SECRET_KEY`) or credential file (`VOLCENGINE_CREDENTIALS_FILE` or `/var/run/secrets/iam/credential`).\n\n### identity config (required vs optional)\n\n| Param | Type | Required | Description |\n|-------|------|----------|--------------|\n| `endpoint` | string | Yes | Identity API URL, e.g. `https://id.cn-beijing.volcengineapi.com` |\n| `accessKeyId` | string | No* | Volcengine Access Key. Omit to load from `VOLCENGINE_ACCESS_KEY` or `credentialsFile` |\n| `secretAccessKey` | string | No* | Volcengine Secret Key. Omit to load from `VOLCENGINE_SECRET_KEY` or `credentialsFile` |\n| `workloadPoolName` | string | No | Workload pool name, default `default` |\n| `workloadName` | string | No | Workload name. Default: agentId or `openclaw-agent` |\n| `audience` | string[] | No | TIP token audience |\n| `durationSeconds` | number | No | TIP token TTL (seconds), default 3600 |\n| `roleTrn` | string | No | Role TRN for STS AssumeRole. When set, workload name is omitted; backend uses roleName |\n| `credentialsFile` | string | No | Path to credential JSON. Default: `VOLCENGINE_CREDENTIALS_FILE` or `/var/run/secrets/iam/credential` |\n| `sessionToken` | string | No | STS session token (or `VOLCENGINE_SESSION_TOKEN`) |\n\n\\* AK/SK must be provided via `accessKeyId`+`secretAccessKey`, environment variables, or `credentialsFile`.\n\n**Environment variables**: `VOLCENGINE_ACCESS_KEY`, `VOLCENGINE_SECRET_KEY`, `VOLCENGINE_SESSION_TOKEN`, `VOLCENGINE_CREDENTIALS_FILE`, `RUNTIME_IAM_ROLE_TRN` (for AssumeRole when loading from file).\n\n### userpool config (OIDC login)\n\n**Explicit mode** (required): `discoveryUrl`, `clientId`, `clientSecret`, `callbackUrl`, `scope`\n\n**Dynamic mode** (required): `userPoolName`, `clientName`, `callbackUrl`; `autoCreate` defaults to true\n\nOAuth2 credential fetch uses control-plane redirect URL and scopes. Override via `/identity fetch <provider> --redirectUrl` and `--scopes`.\n\n### authz config (optional, each flag independent)\n\n| Param | Type | Description |\n|-------|------|-------------|\n| `toolCheck` | boolean | Run CheckPermission for tools (resource type tool). Default false. |\n| `skillReadCheck` | boolean | Run CheckPermission for read of SKILL.md (resource type skill). Default false. |\n| `requireRiskApproval` | boolean | Require user approval for high-risk tools. Default false. |\n| `namespaceName` | string | CheckPermission Cedar namespace. Default `default`. |\n| `lowRiskBypass` | boolean | Skip TIP+CheckPermission for built-in low-risk tools. Default true. |\n| `lowRiskTools` | string[] | Extra tool names treated as low-risk. |\n| `enableLlmRiskCheck` | boolean | Re-evaluate with LLM when rules return medium. Default false. |\n| `llmRiskCheck` | object | LLM config: `endpoint`, `api`, `model`, etc. Required when `enableLlmRiskCheck` is true. |\n| `approvalTtlSeconds` | number | Approval TTL (seconds). Default 300. |\n\n### Workload and TIP\n\nTIP token is obtained via `GetWorkloadAccessTokenForJWT`. Workload behavior:\n\n- **workloadName** (optional): Workload name sent to the API. Default: `agentId` from session, or `\"openclaw-agent\"`. Used only when not using `roleTrn`.\n- **roleTrn** (optional): When set (AssumeRole), the plugin does **not** pass workload name; the backend uses the role name. Use this for delegated execution (e.g. VeFaaS, K8s IRSA).\n- **Auto-create workload**: When `GetWorkloadAccessTokenForJWT` returns 404 (workload not found), the plugin calls `CreateWorkloadIdentity` to create the workload (Category: Agent), then retries. Only applies when a workload name is used (no `roleTrn`). Duplicated (409) from concurrent create is ignored.\n\n### Feishu notifications\n\nLogin success and credential fetch follow-up messages (e.g. \"✓ Credential for `google` added.\") are sent via Feishu when the user runs `/identity` from a Feishu chat. Credentials are read from `channels.feishu` in openclaw.json (same as feishu extension: `appId`, `appSecret`, optional `accounts`). No extra config in agent-identity is required.\n\n**Approval messages** (when a high-risk tool is blocked): For approval requests to be delivered to Feishu (or Telegram, Slack, etc.), set `session.dmScope` to `per-channel-peer` or `per-account-channel-peer` in openclaw.json. With default `session.dmScope: \"main\"`, the sessionKey does not include channel/peer info, so the plugin cannot derive a delivery target and approval messages are not pushed. The user will still see the block/approval_id in the agent's error reply; use `/identity approve <id>` to approve.\n\n### WebChat / TUI\n\nFollow-up messages (login success, credential fetch done) are not delivered when the user runs `/identity` from WebChat or TUI; the plugin has no API to push to those channels. Use `/identity status` to confirm results.\n\n## Tools\n\n- **identity_whoami** - Show current session identity (sub, TIP status)\n- **identity_status** - Login status, credentials, bindings\n- **identity_login** - Start OIDC login or refresh TIP\n- **identity_logout** - Clear session and TIP\n- **identity_list_credentials** - List providers and credentials (paginated)\n- **identity_list_tips** - List valid TIP tokens and bindings\n- **identity_config** - Show plugin config (redacted)\n- **identity_config_suggest** - Generate config snippets for openclaw.json (intent, lang)\n- **identity_fetch** - Add credential (provider, flow?, redirectUrl?, scopes?)\n- **identity_set_binding** - Bind provider → env var\n- **identity_unset_binding** - Remove env binding\n- **identity_approve_tool** - Optional tool; approve high-risk tool call by approval_id. Prefer `/identity approve <id>` (human-only; agent must not self-approve).\n- **identity_risk_check** - Diagnose risk for a command or tool call (command, or toolName+params)\n- **identity_list_risk_patterns** - List built-in dangerous commands and sensitive paths\n\n## Hooks\n\n- **before_agent_start** - Fetch TIP token; inject credentials into `process.env` per credential-env-bindings (per-session)\n- **subagent_spawned** - Propagate TIP to child session on subagent spawn\n- **before_tool_call** - Optional AuthZ when authz.toolCheck, authz.skillReadCheck, or authz.requireRiskApproval. TIP + CheckPermission for tools/skills; risk approval for high-risk tools. Evaluates user-provided commands/paths (rules + optional LLM via authz.enableLlmRiskCheck).\n\n## Data Storage\n\nPlugin data at `~/.openclaw/plugins/identity/`:\n\n- `sessions.json` - sessionKey → userToken mapping (expired pruned on load/save)\n- `tip-tokens.json` - sessionKey → TIP token cache (expired pruned on load/save)\n- Credentials - in-memory only, per-session (api_key, oauth2); lost on gateway restart; cleared on logout\n- `credential-env-bindings.json` - per-session: `{ [sessionKey]: { [provider]: envVar } }`\n- OIDC state - in-memory only (ephemeral, 5 min TTL)\n","readmeFilename":"README.md"}