Tenant-shaped recall hold payload
Gated writeIntegrations
RecallOps shows what each integration can do today, what evidence supports it, and what remains gated before any real tenant write or regulator submission.
Normalized action
The same recall scope becomes SAP, Oracle, regulator, and audit artifacts without pretending every branch has the same live status.
Tenant-shaped recall hold payload
Gated writeOracle-shaped hold contract
Gated writeJurisdiction-shaped filing pack
Submission gatedAgent-room coordination proof
Captured proofThe deterministic BAT-4421 packet references captured room, participant, handoff, hold, and notice IDs without presenting them as a new provider run.
capturedThe public proof endpoint checks the deployed sandbox path without claiming a customer tenant write.
liveThe site shows the normalized contract and keeps live tenant writes behind authorization.
No tenant writeRecallOps records redacted SAP and Oracle receiver receipts, separate from customer tenant authorization.
liveCPSC, EU Safety Gate, and regional authority payloads are generated from the same source packet while live external submission stays gated.
No tenant writeThe e-signature endpoint requires a verified approval key and seals source evidence, room run, filing pack, signature meaning, and signer identity.
Requires authorizationLive writes stay disabled unless a real tenant endpoint and admin key are configured.
Requires authorizationAI/ML API and Featherless are invoked explicitly; the proof bundle discloses used count, response hashes, and cooldown state.
Requires authorizationVerify
Start with the audit packet for the full proof chain, or open the live SAP sandbox and enterprise dry-run endpoints directly.