{
  "surveillanceSchemaVersion": "1.0",
  "systemId": "liquid-coinvest",
  "classification": {
    "current": null,
    "label": "Unclassified",
    "status": "insufficient-evidence-for-exposure-class"
  },
  "cadence": {
    "mcpAuthorizationSafety": "weekly"
  },
  "evidencePolicy": {
    "scheduledObservations": "committed JSON plus GitHub Actions artifact",
    "upstreamPinning": "each observation records the exact Liquid Co-Invest MCP upstream commit",
    "currentLimitation": "surveillance re-tests the public local MCP client and mocked HTTP boundary rather than Liquid's private backend or live order execution",
    "productionCertification": false,
    "exposureClassEffect": "none until backend idempotency enforcement, live authorization scope, order containment, cancel/revoke behavior and execution recovery are proven"
  },
  "latestEndpoints": {
    "mcpAuthorizationSafety": "/data/agent-risk-graph/surveillance/liquid-coinvest/latest/mcp-authorization-safety.json"
  }
}
