Parent RFC
Depends on
- Released SDK manifest support.
- Released Builder composition/proposal workflow.
- Released
@weaverse/mcp v3.
Objective
Document the agent-ready composition architecture, security model, public contracts, and MCP v3 migration after the underlying behavior is released.
Scope
- Document generated component manifests, sensitivity metadata, repository guidance, and CI freshness checks.
- Document canonical composition reads, revision/hash semantics, redaction, and project allowlists.
- Document proposal operations, immutable revisions, stale-base behavior, preview, merchant approval, publication, audit, and rollback.
- Document the MCP v3 default proposal mode and explicitly enabled advanced live mode.
- Provide a 2.x-to-3.x migration guide, including renamed live tools and environment configuration.
- Clearly state that agents cannot approve or publish.
- Update examples and troubleshooting guidance.
- Coordinate matching updates to the canonical Weaverse Hydrogen skills and
.cursorrules after SDK and Builder releases.
Acceptance criteria
Out of scope
- Shopify Standard Actions/Events and WebMCP, tracked under Weaverse/builder#2657.
Parent RFC
Depends on
@weaverse/mcpv3.Objective
Document the agent-ready composition architecture, security model, public contracts, and MCP v3 migration after the underlying behavior is released.
Scope
.cursorrulesafter SDK and Builder releases.Acceptance criteria
Out of scope