Discovery documents
Every machine-readable document GridRouter publishes for agents and tools, with its URL and media type.
Agents and tools find the API, the MCP server and our skills from these documents. All of them
are public, CORS-open (Access-Control-Allow-Origin: *) and cached for an hour. They are generated
from one set of origins, so the three hosts always agree.
Site
| Document | URL | Media type | Purpose |
|---|---|---|---|
| llms.txt | https://gridrouter.io/llms.txt | text/plain; charset=utf-8 | Index of the site, API, MCP server and catalog for language models. |
| llms-full.txt | https://gridrouter.io/llms-full.txt | text/plain; charset=utf-8 | Every guide, capability and provider inline, plus the customer integration skill. |
| API catalog (site) | https://gridrouter.io/.well-known/api-catalog | application/linkset+json; profile="https://www.rfc-editor.org/info/rfc9727" | RFC 9727 linkset pointing at the OpenAPI descriptions, docs and MCP server. |
| AI Catalog (site) | https://gridrouter.io/.well-known/ai-catalog.json | application/ai-catalog+json | Points agents at the MCP Server Card. |
| Agent Skills index | https://gridrouter.io/.well-known/agent-skills/index.json | application/json | Agent Skills discovery v0.2.0: downloadable SKILL.md files with sha256 digests. |
| Agent Skills index (v0.1.0) | https://gridrouter.io/.well-known/skills/index.json | application/json | Legacy Agent Skills discovery path for older clients. |
| security.txt (site) | https://gridrouter.io/.well-known/security.txt | text/plain; charset=utf-8 | RFC 9116 vulnerability disclosure contact and policy. |
API
| Document | URL | Media type | Purpose |
|---|---|---|---|
| OpenAPI 3.1 | https://api.gridrouter.io/openapi.json | application/vnd.oai.openapi+json;version=3.1 | The full API description. |
| OpenAPI 3.0 | https://api.gridrouter.io/openapi-3.0.json | application/json | The same description down-converted for tools that only read 3.0. |
| API llms.txt | https://api.gridrouter.io/llms.txt | text/plain; charset=utf-8 | The API's own endpoint index for language models. |
| API catalog (api) | https://api.gridrouter.io/.well-known/api-catalog | application/linkset+json; profile="https://www.rfc-editor.org/info/rfc9727" | RFC 9727 linkset served by the API host. |
| security.txt (api) | https://api.gridrouter.io/.well-known/security.txt | text/plain; charset=utf-8 | RFC 9116 disclosure contact on the API host. |
MCP server
| Document | URL | Media type | Purpose |
|---|---|---|---|
| MCP Server Card | https://mcp.gridrouter.io/mcp/server-card | application/mcp-server-card+json | Name, transport, auth header and protocol versions of the MCP server. |
| OAuth protected resource metadata | https://mcp.gridrouter.io/.well-known/oauth-protected-resource/mcp | application/json | RFC 9728 metadata naming the authorization server for the MCP endpoint. |
| OAuth authorization server metadata | https://mcp.gridrouter.io/.well-known/oauth-authorization-server | application/json | RFC 8414 endpoints for the MCP OAuth 2.1 flow. |
| AI Catalog (mcp) | https://mcp.gridrouter.io/.well-known/ai-catalog.json | application/ai-catalog+json | Points agents at the MCP Server Card from the MCP host. |
| security.txt (mcp) | https://mcp.gridrouter.io/.well-known/security.txt | text/plain; charset=utf-8 | RFC 9116 disclosure contact on the MCP host. |
Why there is no agent.json
/.well-known/agent.json is an A2A Agent Card. It describes an autonomous agent that other agents
delegate tasks to over the A2A protocol. GridRouter is not an A2A agent: it is an API and an MCP
server that your agents call as tools. The MCP Server Card describes exactly that (transport, auth
header and protocol versions), and the AI Catalog points to it, so those are the documents we
publish instead.
Next