Identities for entities did.bot
agent llm did

docs(plan): add auth-types, an epic for the credentials the server accepts master

Nothing authenticates today and oauth only covers one credential. This names the set — OAuth with DPoP, legacy sessions, inter-service, operator — says which routes take which, and keeps the hook-stamped local identity off the wire. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com> Change-Id: I4c3f64db0893e25eeac85e37cfa74fb01c510692