SCOPE grants export to PF-Core runtime obligations that specify permitted and blocked tools.
Contract version: pf-core-v0.5. Full field mapping: external_integration_contracts.md.
scope export pf --grant grant.json --out pf_obligation.json --validateOptional live validation when a PF-Core checkout is configured:
export PF_CORE_REPO_PATH=/path/to/pf-core
scope export pf --grant grant.json --out pf_obligation.json --validate --liveSample output shape: adapters/pf_core/examples/pf_obligation.json (regenerate with a live grant for current contract fields).
obligation_version—pf-core-v0.5permitted_tools— tools runtime may invokeblocked_tools— tools that must remain blockedapproved_scope— SCOPE approval scopeconstraints— protocol version, single-use flagsexpiration— invalidation triggers- Signature fields — copied when present on signed grant
action_chain_id/pf_trace_id/pf_trace_hash— round-tripped for runtime evidence reconstruction (SCOPE-AS-05)
PF-Core verifies that runtime traces respect these obligations. SCOPE defines permission; PF-Core verifies compliance. OVK remains out-of-repo for this release (see ADR-0007).
- pcs_export.md — PCS bundle includes
pf_obligation.json - migration_runtime_evidence.md — runtime audit events
- akta_scope_demo.md — end-to-end export demo