# Copyroom Canonical API prefix: /api/v1 Read /openapi.json and /api/help before calling. Authenticate private operations with Cloudflare Access. Send Idempotency-Key on mutations. Treat next_actions as structured lifecycle obligations. At session start, GET /api/v1/actions and resume assigned obligations. After local iteration, close return_final_copy with the exact settled copy. Recovery: refresh or rotate rejected Access credentials.