# ratstack.sh auth.md

Ratstack's public agent surfaces are anonymous. Agents may call the MCP, A2A, and HTTP capability endpoints without credentials.

## Agent access

- Audience: agents reading and querying the public rat-stack corpus.
- Registration or provisioning: none. There is no registration endpoint.
- Supported method: anonymous HTTPS requests.
- Credentials: do not send any. Ratstack does not issue or accept access tokens.
- OAuth: none. Ratstack is not an OAuth authorization server and has no protected-resource metadata.
