import type { AgentTool } from '@earendil-works/pi-agent-core'; export declare const DELEGATION_CAPABILITIES: readonly ["local_read", "web_read", "knowledge_read", "skills_read", "external_read", "local_write", "command", "browser"]; export type DelegationCapability = typeof DELEGATION_CAPABILITIES[number]; export type DelegationMode = 'inspect' | 'read' | 'research' | 'review' | 'implement' | 'custom'; /** Host-owned classifications. New tools fail closed until classified. */ export declare const DELEGATION_TOOL_CAPABILITIES: Readonly>; export declare function delegationCapabilities(mode: DelegationMode, requested?: DelegationCapability[]): Set; export declare function resolveDelegationTools(parentNames: readonly string[], mode: DelegationMode, requested?: string[], capabilities?: DelegationCapability[]): { granted: string[]; rejected: { tool: string; reason: string; }[]; }; /** Always enforce the external read contract, even when the child explicitly sends readOnly:false. */ export declare function protectDelegatedTool(tool: AgentTool): AgentTool;