OptionaldispatchOptionalidempotencyMakes this start exactly-once for this principal: a retry carrying the same key converges onto the run the first call made, on whatever thread it made it, instead of starting a second one.
TRUSTED-CALLER ONLY, and not by omission: the public agent router rejects
every body field but prompt, so a key can only arrive from a host seam —
a schedule adapter, a delegating agent, a host's own start path. That is
the same posture requestContext and providerOptions take here, and for
the same reason: a tenant able to name a key could converge onto, or
collide with, a run it did not make. (Ownership makes the collision refuse
rather than succeed, but a tenant-reachable key would still be a probe.)
OptionalproviderTrusted, JSON-safe model provider options from an internal schedule.
OptionalrequestTrusted stored context, used by schedule and wake adapters only. The topology strips runtime-owned keys before forwarding it to the host.
OptionalresourceOptionalrunOptionalscheduleRequired provenance for a schedule.fire target.
OptionalstreamTrusted stream-call context layered over requestContext. Public HTTP starts do not expose either context field.
OptionalthreadedOptionalthreadOptionaltopologyTrusted host-only DO address for an ephemeral unthreaded execution.
Prepared schedule trigger authorizing this exact run.