DL-477
The gateway credential door takes its caller from the triggering agent’s own gateway token (RIG-5080, RIG-4346 option B): each GatewayCredentials request carries a debug_redact agent_token beside the llm-gateway service bearer, and the Server takes agent, owner and tenant from the live gateway_tokens row (DL-381 shape), so the system-role GatewayAgentTenant lookup is deleted. agent_account_id is removed and reserved, not deprecated, because no gateway image pins a client. The gateway keeps one AuthStorage per owner, and its compass store sends the token of the request that caused each call through a route-scope seam; a write whose token was revoked mid-request is parked for the owner’s next request. Whether a door call may run with no request behind it is open (record Q1). Rejected: an owner-scoped grant token (option 1) and keeping option A (option 3)
Status: Active (Matt, 2026-10-10)
Record: ../../server/compass-gateway-credential-door-agent-token.md#approach