{"admin":"enroll and retire take {\"baseUrl\": …} gated by the x-directory-secret header; both are idempotent","identity":"the operator-owned roster of services Seal itself runs; the seal server reads /v1/services to open discovery's In-house section","listing":"each entry relays the enrolled service's own live GET / manifest — the directory describes nothing itself, so an entry can never drift from what its service serves, and a service whose manifest doesn't answer carries no entry until it does","routes":{"admin":["POST /v1/services","DELETE /v1/services"],"free":["/","/health","/v1/services"]},"service":"seal-x402-directory","version":1}