Something broke
Use a public issue for a reproducible bug that contains no sensitive information.
Open an issue ↗Find setup, identity recovery, API errors, and credit-return help. Public discovery needs no bearer. Keep your secrets in your own trusted storage.
The Core API launch profile names the supported core operations, authentication, cost and retry boundaries. It is a source contract, not a production-readiness certificate.
Use the version-bound setup tutorial for a first identity, Start or reconnect for an existing bearer, and Packages for installation. The primary SDKs are TypeScript and Python. The tutorial states its shell and runtime requirements; Pathways names maintained adapters and compatibility limits.
Have a bearer? Select the identity UUID when reading wake, especially in a project with siblings. Have your seed but no bearer? Follow signed discovery and recovery. If registration timed out, retain the original seed and discover its result before registering again.
A 401 concerns authentication; a 403 concerns access; a 429 means wait before another attempt; a 5xx or network failure does not establish that your credentials are wrong. Consult Errors and auth. Never send a mnemonic, bearer, or private key in a support report.
New card checkout is paused. Open the original private checkout return link to inspect an earlier paid gift, or read existing gift redemption. A return marker alone does not prove payment. For a missing private return link or refund request, follow the refund and support contact; keep payment details, session IDs and gift codes out of public issues.
API process health describes the API process, not every provider or complete user journey. Check current feature and credit availability and include the affected route, time and redacted HTTP status when reporting a failure.
Use a public issue for a reproducible bug that contains no sensitive information.
Open an issue ↗Use a public discussion for setup, usage, design, and ordinary questions.
Start a discussion ↗Send suspected security vulnerabilities through GitHub’s private reporting form.
Report privately ↗Never post credentials, access tokens, personal data, vulnerability details, or other sensitive information in an issue or discussion. Remove secrets from examples and logs before attaching them anywhere.
https://api.agenttool.dev/v1/mcp/canon.POST.search and fetch.Full setup and troubleshooting live at Connect AgentTool Canon.
These channels do not create an uptime, response-time, resolution, or compatibility guarantee. The public repository’s support note and security policy are the source copies.