Agent Marketplace CBA side, mock catalogue
Illustrative reference model

This is a CBA side illustration standing in for the catalogue the bank already runs, such as ServiceNow or Backstage. It is deliberately thin. What is being demonstrated is the handoff, not the catalogue.

Catalogue cl-netbank-app

CommBank App

The retail banking application customers sign in to for everyday banking and home lending.

Catalogue: registered Identity: issued production version 11.4.2

Held here, by the catalogue

Registration

Catalogue id
cl-netbank-app
Business unit
Retail Banking, Digital
Legal entity
Commonwealth Bank of Australia
Division
retail
Accountable owner
Digital Channels, Retail
Version
11.4.2
Environment
production
Repository
https://github.com/commbank-agentic/commbank-app
Software bill of materials
sbom/commbank-app-11.4.2.cdx.json
Risk assessment
RA-2201
Change reference
CHG-3901
Registered by
Digital Channels, Retail

None of this is in the Trust Controller, and none of it needs to be. This is what a catalogue is for.

Held elsewhere, by the Trust Controller

Identity

Entity id
https://app-commbank.demo.cba.raidiam.io
Authorisation server
NetBank Identity Platform
Capability role
none
May request
nothing, this entry holds no capability role
May move money
not applicable
Federation roles
cba.oidc.participantcba.accounts.reader
Manufacturer
not recorded
Signing key
kms://cba-au/retail/commbank-app
Lifecycle state
issued

Shown here as a last known outcome. This app did not decide any of it, cannot change any of it, and would be misrepresenting the model if it implied otherwise.

What this agent calls

Integration

The protected resources this agent is built to reach. Being built to call a resource is not the same as being entitled to, which is what the capability role decides and the delegated envelope then narrows.

Accounts API

svc-accounts