Permission model
Marketplace read tools
External public-source search
These read-only tools are available to every signed-in connector user and do not require an additional OAuth permission. External document reading is restricted to the configured public-procurement source inventory and applies download, redirect, file-size, and network-address safeguards. Extracted PDFs include one-based physical page markers so the assistant can cite the page supporting each claim. Results and extracted text are external public evidence, not imported or verified CivicMarketplace records. Your assistant should preserve that distinction when presenting them.
Reference data
Supplier creation
Supplier creation is metadata-only. It does not upload binary logo, catalog, insurance, or W-9
files; pass existing S3 keys where supported.
Agency quote requests
Agency inbox
Supplier quote requests
These tools are for signed-in supplier users. They only show quote requests sent to the authenticated supplier account.Supplier dashboard profile
These tools operate on the signed-in supplier’s own dashboard profile. They never accept asupplier_id.
For supplier dashboard keywords, the API field is
city_service_ids. For capacity, use internal
nigp_code_id values returned by list_supplier_profile_options with kind='nigp_codes', not
NIGP class numbers like 204 or 208.Supplier media
Supplier references
Supplier solicitations
Supplier team and analytics
Admin tools
Admin tools require a CivicMarketplace admin account plusadmin:read or admin:write.

