Optional ReadonlydeploymentVerified infrastructure tag for audit attribution (present under workerd).
ReadonlyinitThis DO's storage/runtime/pubsub wiring, built once per instance.
ReadonlyprincipalWHO is executing — the authority the agent host gates on. Automated principals must have been declared by the target agent.
ReadonlythreadThis instance's thread — its own idFromName identity, never the request's.
The identity + wiring every thread route receives, already asserted.