> ## Documentation Index
> Fetch the complete documentation index at: https://evalgate.com/docs/llms.txt
> Use this file to discover all available pages before exploring further.

# Evaluate an agent evidence policy gate

> Requires scopes: traces:write



## OpenAPI

````yaml /api-reference/openapi.json post /api/agent-evidence/policy/evaluate
openapi: 3.1.0
info:
  title: EvalGate API
  version: 3.7.6
  description: EvalGate API. See docs/api-contract.md for stability commitments.
servers:
  - url: https://evalgate.com
    description: Production
  - url: http://localhost:3000
    description: Local
security: []
paths:
  /api/agent-evidence/policy/evaluate:
    post:
      tags:
        - agent evidence
      summary: Evaluate an agent evidence policy gate
      description: 'Requires scopes: traces:write'
      operationId: post_agent_evidence_policy_evaluate
      requestBody:
        required: true
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/PostApiAgentEvidencePolicyEvaluateRequest'
      responses:
        '201':
          description: Successful response
          content:
            application/json:
              schema:
                $ref: >-
                  #/components/schemas/PostApiAgentEvidencePolicyEvaluateResponse201ApplicationJson
        '400':
          $ref: '#/components/responses/ValidationError'
        '401':
          $ref: '#/components/responses/Unauthorized'
        '403':
          $ref: '#/components/responses/Forbidden'
        '404':
          $ref: '#/components/responses/NotFound'
        '409':
          $ref: '#/components/responses/Conflict'
        '429':
          $ref: '#/components/responses/RateLimited'
        '500':
          $ref: '#/components/responses/InternalError'
      security:
        - bearerAuth:
            - traces:write
components:
  schemas:
    PostApiAgentEvidencePolicyEvaluateRequest:
      type: object
      properties:
        action:
          type: string
        sideEffectClass:
          oneOf:
            - type: string
              enum:
                - draft
            - type: string
              enum:
                - none
            - type: string
              enum:
                - read
            - type: string
              enum:
                - write
            - type: string
              enum:
                - classify
            - type: string
              enum:
                - recommend
            - type: string
              enum:
                - update_record
            - type: string
              enum:
                - delete
            - type: string
              enum:
                - external_send
            - type: string
              enum:
                - code_change
            - type: string
              enum:
                - deployment_change
            - type: string
              enum:
                - permission_change
            - type: string
              enum:
                - money_movement
            - type: string
              enum:
                - legal_commitment
            - type: string
              enum:
                - customer_contact
            - type: string
              enum:
                - safety_critical_action
            - type: string
              enum:
                - clinical_or_safety_relevant_action
        profileKey:
          type: string
        environment:
          type: string
        manifestHash:
          oneOf:
            - type: 'null'
            - type: string
        runtimeKey:
          type: string
        connectorKey:
          type: string
        approvalState:
          oneOf:
            - type: 'null'
            - type: string
        runtimeRiskTier:
          oneOf:
            - type: string
              enum:
                - low
            - type: string
              enum:
                - medium
            - type: string
              enum:
                - high
            - type: string
              enum:
                - critical
        connectorRiskTier:
          oneOf:
            - type: string
              enum:
                - low
            - type: string
              enum:
                - medium
            - type: string
              enum:
                - high
            - type: string
              enum:
                - critical
        expectedManifestHash:
          oneOf:
            - type: 'null'
            - type: string
        links:
          type: object
          properties:
            aiSystemId:
              type: number
            runtimeId:
              type: number
            connectorId:
              type: number
            toolInvocationEvidenceId:
              type: number
            sideEffectLedgerId:
              type: number
          additionalProperties: false
      additionalProperties: false
      required:
        - action
        - sideEffectClass
        - profileKey
    PostApiAgentEvidencePolicyEvaluateResponse201ApplicationJson:
      type: object
      properties:
        result:
          type: object
          properties:
            decision:
              oneOf:
                - type: string
                  enum:
                    - unknown
                - type: string
                  enum:
                    - requires_approval
                - type: string
                  enum:
                    - denied
                - type: string
                  enum:
                    - allowed
            severity:
              oneOf:
                - type: string
                  enum:
                    - low
                - type: string
                  enum:
                    - medium
                - type: string
                  enum:
                    - high
                - type: string
                  enum:
                    - critical
            requiresHumanApproval:
              type: boolean
            blockDeployment:
              type: boolean
            reasons:
              type: array
              items:
                type: string
            policyVersion:
              type: string
            inputHash:
              type: string
          additionalProperties: false
          required:
            - decision
            - severity
            - requiresHumanApproval
            - blockDeployment
            - reasons
            - policyVersion
            - inputHash
        decision:
          type: object
          properties:
            input:
              allOf:
                - type: object
                  properties:
                    schemaVersion:
                      type: number
                    context:
                      type: object
                      additionalProperties:
                        $ref: '#/components/schemas/JsonValue'
                    question:
                      type: string
                  additionalProperties: false
                - type: object
                  additionalProperties:
                    $ref: '#/components/schemas/JsonValue'
            decision:
              type: string
            severity:
              type: string
            reasonCode:
              oneOf:
                - type: 'null'
                - type: string
            id:
              type: number
            createdAt:
              type: string
              format: date-time
            organizationId:
              $ref: '#/components/schemas/OrganizationId'
            metadata:
              allOf:
                - type: object
                  properties:
                    schemaVersion:
                      type: number
                  additionalProperties: false
                - type: object
                  additionalProperties:
                    $ref: '#/components/schemas/JsonValue'
            aiSystemId:
              oneOf:
                - type: 'null'
                - type: number
            reason:
              oneOf:
                - type: 'null'
                - type: string
            inputHash:
              oneOf:
                - type: 'null'
                - type: string
            policyVersion:
              type: string
            question:
              type: string
            decidedAt:
              type: string
              format: date-time
            permissionProfileId:
              oneOf:
                - type: 'null'
                - type: number
            evidenceItemIds:
              type: array
              items:
                type: number
            runtimeId:
              oneOf:
                - type: 'null'
                - type: number
            connectorId:
              oneOf:
                - type: 'null'
                - type: number
            runtimeVersionId:
              oneOf:
                - type: 'null'
                - type: number
            connectorManifestSnapshotId:
              oneOf:
                - type: 'null'
                - type: number
            rawEventId:
              oneOf:
                - type: 'null'
                - type: number
            toolInvocationEvidenceId:
              oneOf:
                - type: 'null'
                - type: number
            sideEffectLedgerId:
              oneOf:
                - type: 'null'
                - type: number
            decisionKey:
              oneOf:
                - type: 'null'
                - type: string
          additionalProperties: false
          required:
            - input
            - decision
            - severity
            - reasonCode
            - id
            - createdAt
            - organizationId
            - metadata
            - aiSystemId
            - reason
            - inputHash
            - policyVersion
            - question
            - decidedAt
            - permissionProfileId
            - evidenceItemIds
            - runtimeId
            - connectorId
            - runtimeVersionId
            - connectorManifestSnapshotId
            - rawEventId
            - toolInvocationEvidenceId
            - sideEffectLedgerId
            - decisionKey
      additionalProperties: false
      required:
        - result
        - decision
    JsonValue:
      oneOf:
        - type: 'null'
        - type: boolean
        - type: number
        - type: string
        - type: array
          items:
            $ref: '#/components/schemas/JsonValue'
        - type: object
          additionalProperties:
            $ref: '#/components/schemas/JsonValue'
    OrganizationId:
      type: string
      format: uuid
    ApiError:
      type: object
      properties:
        error:
          type: object
          properties:
            code:
              type: string
              enum:
                - UNAUTHORIZED
                - FORBIDDEN
                - NOT_FOUND
                - VALIDATION_ERROR
                - RATE_LIMITED
                - CONFLICT
                - INTERNAL_ERROR
                - SERVICE_UNAVAILABLE
                - QUOTA_EXCEEDED
                - NO_ORG_MEMBERSHIP
                - CROSS_ORG_REFERENCE
                - INCOMPLETE
                - MALFORMED
            message:
              type: string
            details: {}
            requestId:
              type: string
              format: uuid
          required:
            - code
            - message
      required:
        - error
  responses:
    ValidationError:
      description: Validation error
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Unauthorized:
      description: Unauthorized
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Forbidden:
      description: Forbidden
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    NotFound:
      description: Resource not found
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    Conflict:
      description: Conflict
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    RateLimited:
      description: Rate limit exceeded
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
    InternalError:
      description: Internal server error
      content:
        application/json:
          schema:
            $ref: '#/components/schemas/ApiError'
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer
      bearerFormat: API Key or Session Token

````