404 rather than 403 to avoid leaking resource existence. See Authorization model for the full specification.
Endpoints
Assess individual risk
risk_assessment feature flag on the caller’s plan.
Request body:
Example request:
RiskAssessment object with risk_score, risk_level, recommendation, confidence, contributing_factors, suggested_thresholds, explanation, proof_id, proof_status (none, pending, proving, verified, or failed — see proof lifecycle), and created_at. Results are cached 5 minutes per {agent_id, action_type, risk_tolerance, amount} tuple.
Assess team risk
Example request:
TeamRiskAssessment object with team_risk_score, team_risk_level, team_coherence_score, team_recommendation, pillar breakdowns (portfolio_risk, coherence_risk, concentration_risk, weakest_link_risk), shapley_values, outliers, clusters, value_divergences, synergy_type, individual_assessments, explanation, and proof fields.
Get assessment
ra-...). Requires an active risk_assessment entitlement (403 feature_gated otherwise); an assessment owned by another account, or absent, returns 404.
Get team assessment
tra-...). Requires an active team_risk_assessment entitlement; a team assessment owned by another account, or absent, returns 404 — see Authorization model.
Get risk history
Response:
{ assessments: RiskAssessment[], total, limit, offset }
Get team risk history
limit (default 20) / offset query parameters as individual history.
Response: { team_id, assessments: TeamRiskAssessment[], total, limit, offset }
Get proof
rpf-...) by id, generated fire-and-forget after /risk/assess or /risk/assess/team. Requires the entitlement for the assessment type the proof verifies; a proof owned by another account, or absent, returns 404.
Response fields:
Feature gating
Individual assessment creation (POST /v1/risk/assess) requires the risk_assessment feature flag on the caller’s plan (402 if the plan lacks it). Reading a stored resource — an assessment, a team assessment, history, or a proof — additionally requires an active risk_assessment or team_risk_assessment entitlement depending on resource type; authenticated-but-not-entitled returns 403 feature_gated. See Pricing for current μ-based rates and what’s included.
Error codes
See also
- Risk Assessment Concepts — the scoring model and proof lifecycle
- Risk Engine Guide — SDK usage and gates
- Team Trust Rating — team reputation built from team risk assessments