Every capability is a discrete, logged action the agent calls by name — scoped to what you authorize and recorded in the run trace.
Add Access Methods to GrantSEAM_ADD_ACCESS_METHODS_TO_GRANT
Request additional PIN, card, mobile-key, or cloud-key methods for an existing access grant.
Create Access GrantSEAM_CREATE_ACCESS_GRANT
Grant an existing or new user identity access to spaces, devices, or access-control entrances, requesting PIN, card, mobile-key, or cloud-key methods.
Delete Access GrantSEAM_DELETE_ACCESS_GRANT
Permanently revoke and delete an access grant by UUID, removing the access it manages.
Get Access GrantSEAM_GET_ACCESS_GRANT
Get one access grant by its Seam UUID or unique workspace key.
List Access GrantsSEAM_LIST_ACCESS_GRANTS
List access grants in the workspace, optionally filtered by space, device, entrance, user identity, reservation, customer, key, or IDs; returns one cursor-controlled page.
List Action AttemptsSEAM_LIST_ACTION_ATTEMPTS
Inspect asynchronous Seam operation status, errors, and results in bulk by action-attempt IDs or by device, returning one cursor-controlled page.
List Connected AccountsSEAM_LIST_CONNECTED_ACCOUNTS
List and search provider accounts connected to the workspace, optionally filtering by space, customer, user, or metadata; returns one cursor-controlled page.
List DevicesSEAM_LIST_DEVICES
List and search devices in the workspace, optionally filtering by account, space, IDs, type, manufacturer, customer, creation time, or metadata; returns one cursor-controlled page.
List SpacesSEAM_LIST_SPACES
List and search spaces in the workspace by name, key, or customer, returning one cursor-controlled page of grantable locations.
Update Access GrantSEAM_UPDATE_ACCESS_GRANT
Update an access grant's name or validity window by UUID or unique workspace key. Provide at least one of name, starts_at, or ends_at.