xguard_secretless_call
Call an allowed provider operation with a capability. Enforces scope, call/credit budget and billing before server-side credential injection. Writes require idempotency_key.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| input | No | ||
| method | No | ||
| target | No | ||
| body_json | No | ||
| operation | No | ||
| capability | Yes | Scoped XGuard capability, never an upstream key. | |
| idempotency_key | No |