{"_id":"@promptia-labs/agent-receipt","_rev":"32-128af942646b159ca0ccb9956ad41477","name":"@promptia-labs/agent-receipt","dist-tags":{"latest":"0.24.0"},"versions":{"0.2.0":{"name":"@promptia-labs/agent-receipt","version":"0.2.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.2.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"dbdf9dbdf30c854ff68bd0fcf4452149e210ef44","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.2.0.tgz","fileCount":16,"integrity":"sha512-uljdy1pMZOp9oEIaDg/QfvJjIpx5zDCxfuowUFhee5xjO7k0VFU8bJ3jJkjzyUaUxIZlRV1XoG00lYM1RJiISQ==","signatures":[{"sig":"MEYCIQC9I+lO7OE1zjG+tn/dLtkcSQHeBUyFyghCE4M5PiiLjwIhAPB+MzsdjUAqKJwq3KH1u5PaNsxotZXg3ejjW3zf2DAG","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":65446},"type":"module","engines":{"node":">=18"},"gitHead":"1759d86ce8d4cf4de84a7ee588c81fcc73f84c24","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"Task-level work-contract verifier for AI coding agents — proves what an agent actually changed in your local git tree.","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.2.0_1780400734781_0.19088463145844914","host":"s3://npm-registry-packages-npm-production"}},"0.2.1":{"name":"@promptia-labs/agent-receipt","version":"0.2.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.2.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"59459ace8b225edb477229b5948153bf369751b2","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.2.1.tgz","fileCount":16,"integrity":"sha512-FdOavqe/t/BkfTiA+FFXVX+s9p3bzq6XgnnOMv4bW5xkHzbOxToDPe+taLj1xxgTvs20YZwIF8oev0jCCPCURw==","signatures":[{"sig":"MEUCIQDY5wSa1n1XDvwPQyaQQLaX4MABxjMSnoqNPjbut5UKEgIgcKZ17SFgFQXx3ilPCegBTr0UXTWbxthJheTfjGZZ84M=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":65376},"type":"module","engines":{"node":">=18"},"gitHead":"45139300d711bccf2f3c7a9b5e6eb07788fb0498","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"Task-level work-contract verifier for AI coding agents — proves what an agent actually changed in your local git tree.","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.2.1_1780401520746_0.9317613963088764","host":"s3://npm-registry-packages-npm-production"}},"0.7.0":{"name":"@promptia-labs/agent-receipt","version":"0.7.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.7.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"e1d40f9d602c56ac3b7238102574a3efe66233ce","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.7.0.tgz","fileCount":39,"integrity":"sha512-aDmkX8QWXx+zd7hJXmud0eV6B3ncyEObtOz+SVMzP60l2J4mQXPje/j/uEa0O+pB8aVvqkKFX7OQYrhaau2hPg==","signatures":[{"sig":"MEQCIE98kekTuH6SrhjqH97U443CU/dWkNq6uoCtVAR3e88ZAiAwQP8/Yoq/i5hkmymF5mqHQHpR4qTGL/p6zC2FzsBdhw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":160635},"type":"module","engines":{"node":">=18"},"gitHead":"8484818f21fd89cea774259122fba3d2cb398a47","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"Task-level work-contract verifier for AI coding agents — proves what an agent actually changed in your local git tree.","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.7.0_1780411479586_0.25362669993358233","host":"s3://npm-registry-packages-npm-production"}},"0.8.0":{"name":"@promptia-labs/agent-receipt","version":"0.8.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.8.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"6b54b8aa73d39b1634169d93cd7510b82e114e05","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.8.0.tgz","fileCount":53,"integrity":"sha512-mgcFUXki6QbWIytD27LubALUPRzIBdbRwqxyFZfzV3a2W57ODW5b4JvvbJbgMQgTTHkMwXixZ29GbYeU0WDPpA==","signatures":[{"sig":"MEQCIBFHYQpJyTnx1UR92B03ilDh5SAYgKWU1eQVAWHEvxX8AiA3Zret5mg/WzGmSgMAts3wLA31N6/CplRKDFO4yYbnbQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":225570},"type":"module","engines":{"node":">=18"},"gitHead":"10ebdfb6b38bc1bad23ff1bdc84a1ed79f7ffbd5","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.8.0_1780465537423_0.5308637491819312","host":"s3://npm-registry-packages-npm-production"}},"0.8.1":{"name":"@promptia-labs/agent-receipt","version":"0.8.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.8.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"9deaa1eba86ca313719b147907b38a0484c7b4b4","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.8.1.tgz","fileCount":53,"integrity":"sha512-35vg9GH/M1bIcht/iFrLhB5ESbGa1lsBapAGxurJxifO1o+w0FPU6pPBt/sOwz2650E0KqTWsjnjUwoTSeQATQ==","signatures":[{"sig":"MEUCID1d8D/1V1l3S9Gjkk9jWpn5yNppNCz//zvlCMfAzPfxAiEAn63LL8Kq7KwcIzx1q3mUKkrOcrff8gSIHCfFtBt3BwU=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":228446},"type":"module","engines":{"node":">=18"},"gitHead":"b8c4d29555e33e5cd877d4814d1bfc27c17210ea","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.8.1_1780466656546_0.9615636949362265","host":"s3://npm-registry-packages-npm-production"}},"0.9.0":{"name":"@promptia-labs/agent-receipt","version":"0.9.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.9.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"5604c718339687fa19d08f98cae9b8585cca3107","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.9.0.tgz","fileCount":60,"integrity":"sha512-8npxRztLlBvcLVaQdYZ831OWoNtRu8DQInJZj6XEvvAzZU0aFlnZ/kGwMjTHzBBUNoeymvmWfIfow8Vi3cSNvw==","signatures":[{"sig":"MEQCIEOgIZxOupZv7DIRga1DEcLUoWK6wH5xGSmVaYM223PTAiBg9+OhoUrCsbm9f//RMkmuVrk/ZQu9+2nHdPUJ5mAQZQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":268732},"type":"module","engines":{"node":">=18"},"gitHead":"6287346bed58d5143769ad66e03bffba4e26b052","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.9.0_1780491265124_0.7723038766771098","host":"s3://npm-registry-packages-npm-production"}},"0.9.1":{"name":"@promptia-labs/agent-receipt","version":"0.9.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.9.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"5abe92a3275f4c557c7abcbac9a4904a7e091ae4","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.9.1.tgz","fileCount":61,"integrity":"sha512-9M0i3qYhufIqENqMLRaCySsWgSS6pdPSQ0x2ZFyHXc8NzR6/TD9bRRu5GdzTVuVWLo4tGAP+FlTr7oT0du7GFg==","signatures":[{"sig":"MEQCIB50fn2B8EZvkhDs9yAjRmHqWGNu2K7VIhOSzoAvslEiAiAiJ7Y8wV0QJM5g6/ba+Pc0JWv1tNoVuuayG+yOHtkK2w==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":276517},"type":"module","engines":{"node":">=18"},"gitHead":"d97455cf5437f64f73486d56b4558958f8a84153","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.9.1_1780495802277_0.6779900841448545","host":"s3://npm-registry-packages-npm-production"}},"0.10.0":{"name":"@promptia-labs/agent-receipt","version":"0.10.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.10.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"30398ab3c6f0ed5ee6e2ec3e890e9716cdbb3166","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.10.0.tgz","fileCount":65,"integrity":"sha512-pMMrzna5fpTBc5gIISAVuwIqHLUZ+qC1zF+FuFggz3hN5DEscfYTWnKLsgOJlQ0rVIPSTJugWBWhQwe0LIWxLA==","signatures":[{"sig":"MEUCIQCrd9qm90a3jKPRpQS3HG6ik6TIJScDWh6l13WqNxDh6gIgQBFgp5Euv+FNmcnrfY7k2WDeW/YFmL9Zv1FYUJn/XtY=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":299864},"type":"module","engines":{"node":">=18"},"gitHead":"15e0ed7df1fe280bc709e6a368f47003d4c09ec5","scripts":{"build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.10.0_1782275420997_0.3799830042219252","host":"s3://npm-registry-packages-npm-production"}},"0.11.0":{"name":"@promptia-labs/agent-receipt","version":"0.11.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"1fc1b2449ae867a2d67af7c305fccd41ff347373","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.0.tgz","fileCount":72,"integrity":"sha512-4KbsJxv2WRjplQpuyJ/m4xK7pGGvH7qKAwQ1sdvj4u8ldzVzrxLkFfvWLbbp1IpAniSp+7pRbY9oladMD16AXg==","signatures":[{"sig":"MEUCIQDmDd3HVyHugP+5TkYPEZyGzcuoBtpDVxhhdF94Bsi4GgIgF5UUVQ5DrFoIHFgo4iZhRnQwt8c5DRaIMPpBiUvRzdE=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":396093},"type":"module","engines":{"node":">=18"},"gitHead":"e47efba770d3bd8e3bd774cd7ddf933a79120936","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && tsx test/capture-golden.ts --check","build":"tsc","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.0_1782821644573_0.2831890254360525","host":"s3://npm-registry-packages-npm-production"}},"0.11.1":{"name":"@promptia-labs/agent-receipt","version":"0.11.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"31605dfd9b68d328525daf063a19ed830c7cd7ef","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.1.tgz","fileCount":72,"integrity":"sha512-sy7obfh4e6yjwuDR76w/MXuw3qZCR7Wph7uylnvkwuzgPEnOKymouZRn97RXIdW6HBIU4SSqd08wH0RKHtY61Q==","signatures":[{"sig":"MEQCIDIWIwvhDVU8GSTxxzG6m+Sc0UuvNb/gwN9guzC1ka+HAiAek5TJlthm0vGedFY95SnA5LuZpY2t1uiUAG4MEoffQA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":396198},"type":"module","engines":{"node":">=18"},"gitHead":"cdd86755f052964db2decdaf9d620302efb8f9ef","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && tsx test/capture-golden.ts --check","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.1_1782822260651_0.32034476186399874","host":"s3://npm-registry-packages-npm-production"}},"0.11.2":{"name":"@promptia-labs/agent-receipt","version":"0.11.2","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.2","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"11531a0c442ed80791bfbfccdcb3a96704eeae2c","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.2.tgz","fileCount":72,"integrity":"sha512-Gggqy/8Cf9jabCyoLq/kPN5lqxKJ9OeXsSj8c6p8o86ab3u883tqp54NGyWW/IUjtLfMSgcsBvyEcN72nOJtMQ==","signatures":[{"sig":"MEYCIQCs/3ccEcfF+mVzuNFTKRfjzK/Ox/GBMmB5Mumj57aboQIhAL5zdMGcDV6J7YogAzo6g1GWwQyRvM1eyiHfxWTqrws9","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":398765},"type":"module","engines":{"node":">=18"},"gitHead":"c31bf7046c756fd7134392c27d38f6abc2a927f7","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && tsx test/capture-golden.ts --check","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.2_1782825509643_0.8875194233939263","host":"s3://npm-registry-packages-npm-production"}},"0.11.3":{"name":"@promptia-labs/agent-receipt","version":"0.11.3","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.3","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"71d121386640a7467fb3acbf9c7f46eee33aa696","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.3.tgz","fileCount":72,"integrity":"sha512-IfVVQw4vGTS9cngASiMo6WdnAQSHjpIioG3wPdPc+LEx3lF/kKh6nHhOMHxSYuOLIopHGBOzguXPk7Kl19kUzg==","signatures":[{"sig":"MEQCIELwn8f3cpIeXayVNUuZw4R2McJv4UaOc9eghsa6VcuFAiBFvY5AOZleXkICj0VvWB+OZ2IjWKYQnwBU8jZeqZpoSw==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":408915},"type":"module","engines":{"node":">=18"},"gitHead":"e887f7d422b2b0320bc4b91daa7ab7dd35180978","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && tsx test/capture-golden.ts --check","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.3_1782878912209_0.3221409193278413","host":"s3://npm-registry-packages-npm-production"}},"0.11.4":{"name":"@promptia-labs/agent-receipt","version":"0.11.4","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.4","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"4a90bcc6d395f90646d486635a3556ddd4d61551","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.4.tgz","fileCount":72,"integrity":"sha512-DWhK4Z9wXxvuJtExjg1cmQ2585ZkzANAkIf+rKDSkkqGhBwlqR1XSbqDZcWzgXPOhvD26SewcEAkvXg0b1/BmQ==","signatures":[{"sig":"MEUCIQDIIrvLUv9XWb/00YvVL84bd3L0IjOMUYC+YHGinu/khAIgYBwJcZX+0m2UELBAtcjmPqPAzl28GOcz3rM+wC6fzMg=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":409280},"type":"module","engines":{"node":">=18"},"gitHead":"8c2d8eaedb9f1fe99804c376a505668d6496ae98","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && tsx test/capture-golden.ts --check","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.4_1782882519396_0.16841810399473167","host":"s3://npm-registry-packages-npm-production"}},"0.11.5":{"name":"@promptia-labs/agent-receipt","version":"0.11.5","license":"MIT","_id":"@promptia-labs/agent-receipt@0.11.5","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"e697a1d5a8d314bbc918ba66b23aa1a1f37e17e1","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.11.5.tgz","fileCount":73,"integrity":"sha512-Ax1VwEOo+VGDsQxyWMqDVhzdoNlpCiJ1R3jS3Gd2dQ+eP8L8xILX0chJMpzJG5FA/oundzR+PzHTy4x4+d+MBw==","signatures":[{"sig":"MEUCID15YHnjBoefM0/Btakk4QS0labjXvLA3E7K1S7IauEpAiEAzYj39ii7AnvtE+rvyVSsuaEZFv9kLKXf3A1+dP7ehvY=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":413678},"type":"module","engines":{"node":">=18"},"gitHead":"d891f7939432ef8f8c905d469ed25305a29c6cce","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && tsx test/capture-golden.ts --check","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.11.5_1782887601309_0.1447060180548112","host":"s3://npm-registry-packages-npm-production"}},"0.12.0":{"name":"@promptia-labs/agent-receipt","version":"0.12.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.12.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"123014fb76ee4c9a2ec3dcf64ec6eadae254167f","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.12.0.tgz","fileCount":150,"integrity":"sha512-9JFmwzyOPlE05cKzCUFCcydJ6ohR9CjS2ITdZrwWC8hpcFrDsK4XylqIrTYc2rauZRbfU1QYp2hG8cYFzY4coA==","signatures":[{"sig":"MEQCIEPLdjNP00GKCEMaZIs6IkXTQJRJAO3qe4dxDbWssTmyAiB9uJDJTn6HGQLy/jkPm0NNp8V3we0j6HstIljzG8rglA==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":601673},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"324ebf8325b13499cea4e40fa7273aee39b0dd47","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.12.0_1782968066953_0.22578638795922834","host":"s3://npm-registry-packages-npm-production"}},"0.12.1":{"name":"@promptia-labs/agent-receipt","version":"0.12.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.12.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"f6270f655bfad6bb02a07be878747c3da5f204a4","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.12.1.tgz","fileCount":150,"integrity":"sha512-ppNe802UQWZbkr8ba44rUHLyfrfYI7gehQH07zDhh/h8qhniJLDDfEnNLFaNGGJSAp/sbtT6+GqmBtSphNZbaQ==","signatures":[{"sig":"MEUCIQC9ekLB4m6HBi5B5A8rdREbdQ0o/Z1tgVn8dspCXlkfuQIgMxObrjzwdo5Uuf+DOHooQ8ANOjq9EaGvt8YwUC4FNTA=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":612173},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"e684b357f9786caa6aabb3da371e0cdcdfa81978","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.12.1_1782968862937_0.2050452757976764","host":"s3://npm-registry-packages-npm-production"}},"0.13.0":{"name":"@promptia-labs/agent-receipt","version":"0.13.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.13.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"5a0d31b3248ef8cc20a05248dcec2bd90050d2a1","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.13.0.tgz","fileCount":152,"integrity":"sha512-gNwZWBfI6A/lcbEtmcWjyEOnAJ0uccKxIv9aa2yKYe+Kr+8iT1xibcWwPJQUqqlzLZS+wzD0orq50ZTDOhfipg==","signatures":[{"sig":"MEUCIQDxl0i7e36yVlJzlRJOorpe0weG6gtnb1MTPJupSyGWTQIgQqtR9yNSNu6yn+yML1aOarplXQlqEARlSkxti4zIqa8=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":669379},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"09a66374391648a398cd6cd9ea8c89dccca054a2","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.13.0_1782997041501_0.9408248641575172","host":"s3://npm-registry-packages-npm-production"}},"0.14.0":{"name":"@promptia-labs/agent-receipt","version":"0.14.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.14.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"653de33f81cc6ae90ab3b606da90d5b0dc6b74a0","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.14.0.tgz","fileCount":156,"integrity":"sha512-saka4u7m3EoH8cM5lfmIylukLqNZEJvhladDISARWKALoUfROFaS0vRclbLlOb0MLjB0V3W26VCc9nAgFK+7Hw==","signatures":[{"sig":"MEUCIF2JOIiq0L99ui7mLq1amEIPWLKwk1w31R7u1IHkkMTNAiEAxboX4nhw8tVKcci+E/3874iTQIVvjhCvCOwZP329vjI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":692422},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"76e6f762efa401762934c6598eba3b8c3db69256","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.14.0_1783045580669_0.650692323251937","host":"s3://npm-registry-packages-npm-production"}},"0.15.0":{"name":"@promptia-labs/agent-receipt","version":"0.15.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.15.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"dc4bd8ebde3c82e1ba31642f24aa004de72cbf05","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.15.0.tgz","fileCount":164,"integrity":"sha512-/38qyI/U/A96Sk5TsmbTwXYvGwN2db9Qa7wTwoK1vbf+3Eua5LhE1tOFfGl4EITs8QrXQKh/Aqu8TvMNRLrIFQ==","signatures":[{"sig":"MEYCIQDWByRwl9ggjrEwErM0tJc8dNoDXMGmxyDsYyU4nKD4tgIhAM26Cp7XmNnvK5WGbzuEHFQFHiwsN+autCuWtGa9gfGK","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":732953},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"21dd8581e1810e26805c82b4f6caa101b598a9d7","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.15.0_1783066877183_0.7725464281291146","host":"s3://npm-registry-packages-npm-production"}},"0.15.1":{"name":"@promptia-labs/agent-receipt","version":"0.15.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.15.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"fe1f2add2c69f3dbd9441b1ee901116f2fa89121","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.15.1.tgz","fileCount":164,"integrity":"sha512-nlkVD1OHXnvjE7s3wBl4OImY43kaZzWPRWRe71EqtKHPA9B1fMc2tiSzvOnvuekpbxawsAE90M5UIKUZW0F3Gw==","signatures":[{"sig":"MEUCIQDnsmXw6ZpnBWkehYjfDMGL/F+LNtGx/GAJ3flJEnFaDAIgCyoz0Xh3+505dXUl0wuP4o+4S7wX2CcNFFR5aLPaONI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":734514},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"4249f6889974498db21ecddbf741ad432f290391","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.15.1_1783070944595_0.7137713271243578","host":"s3://npm-registry-packages-npm-production"}},"0.15.2":{"name":"@promptia-labs/agent-receipt","version":"0.15.2","license":"MIT","_id":"@promptia-labs/agent-receipt@0.15.2","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"83086617925a6619c25419e8873cf6af461f3d08","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.15.2.tgz","fileCount":170,"integrity":"sha512-7qU4BTaq7LFFBOko+enmvWKQieSlL4ZJqhnsx3Z6E4kaABHUBSyCIc8xAS4Rt++GvrUrQVNMYwR51FffxtY3bg==","signatures":[{"sig":"MEQCIHqyQ4dmbcLF+n4OFZUPhz/Unwe4C77+DqVk+HEED87fAiAOPTm6PnMWBLccL3aZd94ODQpSvItlBtwMSyfRLi8JTQ==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":752984},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"3e358737d43044e04bd4671aaf2c5a37d5895932","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.15.2_1783090534902_0.9153164430018375","host":"s3://npm-registry-packages-npm-production"}},"0.15.3":{"name":"@promptia-labs/agent-receipt","version":"0.15.3","license":"MIT","_id":"@promptia-labs/agent-receipt@0.15.3","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"1bbaafe64be71cce6f0b1602ac7bb61aed957ac9","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.15.3.tgz","fileCount":170,"integrity":"sha512-EVuHFvUm4gbF1a1HLUBDEXpuxLKTLhU2+RwghlzPn8SjG2uxV/m3oL70RXwvSpFRv3lhDqr5iNfLbDjwVvDSNw==","signatures":[{"sig":"MEUCIQCnm+XVlObEgaHzjff9DOeHEe9cArBSNjknbQFOcvx9aQIgVfebA/XuWqrqLxqL9Y3G9nX5tEPyHJ07fZ4KGWk6JFg=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":763197},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"737982f9f062e643d2ecc0d31903dc2cac0a7a31","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/evidencekernel.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.15.3_1783237743578_0.6748651676185673","host":"s3://npm-registry-packages-npm-production"}},"0.16.0":{"name":"@promptia-labs/agent-receipt","version":"0.16.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.16.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"33bdeb45797105099d52cde0d1fa66c3f5ca6ba2","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.16.0.tgz","fileCount":180,"integrity":"sha512-FwFv8oHuBO4m5CC9kMS75oG6lWbPKEq1fnut9RN9Qgfp6IEapq5iFojCl4QVNzFJFy9tfWsNO2qKSCDVhPE/Sw==","signatures":[{"sig":"MEYCIQC+OBXWi/kv2/io/EkSJ7MS5NdmZiFkfAEgHm7DEzu8qQIhANNQOBqIiCFvxRTbAY9G4zZnxXsnESnVN7xELAhxtdL3","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":831124},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"2c45238af240b8685a7886e92c6fff8acfb80502","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/gate.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.16.0_1783348445679_0.3543971418335057","host":"s3://npm-registry-packages-npm-production"}},"0.16.1":{"name":"@promptia-labs/agent-receipt","version":"0.16.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.16.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"a674482fe6742daa2fdfd974936247bf192792c0","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.16.1.tgz","fileCount":180,"integrity":"sha512-VRfxsZNESoX6KvPeHeSuhOxLCfPIClN+J7/OSaXsjGIxblde/m71Dr3l+1WDB0IEMP0s42N0BYdISr9Jy+/AMQ==","signatures":[{"sig":"MEYCIQCVkQd3jFp97qWGp5wsHlpAn5TsW+B/ms8agT/9Wmmr8wIhALKDaX5mcrvUxmNCtlyW3Ok4zgbyu+dXCELT/hVKij59","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":834951},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"dd5351c3637aa2b60d6776de514efc5bfa10071c","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/gate.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.16.1_1783349675112_0.7918841464151178","host":"s3://npm-registry-packages-npm-production"}},"0.17.0":{"name":"@promptia-labs/agent-receipt","version":"0.17.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.17.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"da7bd511d3f855287fcdc11fea1240a9921aead4","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.17.0.tgz","fileCount":182,"integrity":"sha512-l2uw9OAFs5YVx128qxqUsOC4WwBlauLUovP7HDqZHIBC5Wh0stimsl6N4+dURVkO4DqAkFQ2xbxYmniu+bO4GQ==","signatures":[{"sig":"MEYCIQDktdeRRgSaQ3JnlrBJEx2L8zRQYdgbcINXuB0PWfUxHAIhAN1nY0kiFlKpkdR46olFaqUe2LHNOIvO96aRIamV6gBD","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":845598},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"eaa45a927848c2d655016756e376f57b154c23e1","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.17.0_1783352631950_0.3342482960651201","host":"s3://npm-registry-packages-npm-production"}},"0.20.0":{"name":"@promptia-labs/agent-receipt","version":"0.20.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.20.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"04bf1b9c50d406a6ef68ee6fba2ff63f0faf5af3","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.20.0.tgz","fileCount":188,"integrity":"sha512-8oUwABaK4aeDVkM7CMOI/juuhy4DlpGOUSZxKIv80/0UVb1FCiKfceiFgWMTUDqChdSQNaAyzGj8BPYEFtUTCQ==","signatures":[{"sig":"MEYCIQDeySIHZlN6kH92UcKxIGO4y8B5E0QTt2yANrI9wsC1hQIhAJtNytZ+fAycxGv0W0lmfxtxQLWeJyVNNHidklzc7nTA","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":935479},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"87edfaa6373c74abe23865653828ee02f6f7b5fc","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.20.0_1783401592267_0.489485478328189","host":"s3://npm-registry-packages-npm-production"}},"0.20.1":{"name":"@promptia-labs/agent-receipt","version":"0.20.1","license":"MIT","_id":"@promptia-labs/agent-receipt@0.20.1","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"3811681933aa51c8a65a7646d00a23df2154d203","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.20.1.tgz","fileCount":188,"integrity":"sha512-gH+MHSwMoOGLD+AtqgGLgLVM3U8TLQoPMY00o7/PjRIJokeuThyEZCI5OTLja/htC/VNtrYJvsf81qOaEJptHg==","signatures":[{"sig":"MEYCIQCyq7F4v94ffnX8WTVlp19MkITz8wBh8Shm9mohI7HPhgIhAKLJ3Brdep4EkygsTn0J4eoWdv8RIiqRAPfEWkvJ4bZQ","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":936938},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"95733cd55905f02f46a93c3a4d41d24c4c499aa9","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.20.1_1783411873492_0.10492755367517703","host":"s3://npm-registry-packages-npm-production"}},"0.20.2":{"name":"@promptia-labs/agent-receipt","version":"0.20.2","license":"MIT","_id":"@promptia-labs/agent-receipt@0.20.2","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"30407250b93b906f7f5261cc5c5a5bf2e2a0fdce","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.20.2.tgz","fileCount":188,"integrity":"sha512-SHjkdcH4F7zmEomLo3NX3czhrzQ57z5eLKuZvUVotntpP//sUHU6dKtqBwAR0lzFftA0IWg+2xgoUVm5n9kvhQ==","signatures":[{"sig":"MEQCIAwLwxpeJsdjeg2CGVdsOZ5govFRT804PtNLa+AKRhvgAiAX7lCkmrESAGT8rm1JHFXDYUfggHb7r6KWM+WCrtTD1g==","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":938655},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"496f8730838d8e60d6a4062b15073a28cbff5483","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/site-parity.test.mjs && node test/site-replay-equivalence.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.20.2_1783422034892_0.6003267086225879","host":"s3://npm-registry-packages-npm-production"}},"0.21.0":{"name":"@promptia-labs/agent-receipt","version":"0.21.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.21.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"5aafee5589f2711c610114f1f5bf87c85138f6ff","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.21.0.tgz","fileCount":192,"integrity":"sha512-/IhADlw6Iri4sriDIaPFQSK5Jp5gCYXZemtc6UQarn+1Fxs7yC1HkrmpCv+xhefSv1afWSNV+XqOMesLEvtOsQ==","signatures":[{"sig":"MEUCIQCIf0koEI8OtbPVoEyMdJOoTLtdNf7r0DbBgrjy59rzqwIgPYG8DGY0fUyI5DnsdXrRaH+3oLvjbhxKQhKgExAiVOQ=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":1007531},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"150d2c7ec9ce8fa50c57ee60ffacfd780c85d6e1","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/jcs.test.mjs && node test/tap-unit.mjs && node test/tap-proc.mjs && node test/tap-cli.mjs && node test/tap-window.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/site-parity.test.mjs && node test/site-replay-equivalence.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.21.0_1783483556437_0.7637609114204122","host":"s3://npm-registry-packages-npm-production"}},"0.22.0":{"name":"@promptia-labs/agent-receipt","version":"0.22.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.22.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"c5f06c5b726654001786f0dac2e3b85f6082e7be","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.22.0.tgz","fileCount":196,"integrity":"sha512-o1kA0Thw6btN+INtc0mLHunlVTnsJ8kj4yLG+p8Y7fLLF6Y2WFpcj+7lUEnJJY1tlVAL07NPXRSR8iHGY2Qomg==","signatures":[{"sig":"MEUCIGvKjqcSNtmsH8B2I3RdE0fRDHbwZHbh54mQwzrga1A4AiEAp9bmk5khtA+9epn2dxG6iUk+aGULIdi8m/ESGJRd4eM=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":1019914},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"fd1df706b51c13f89bec6a8205478ccf6f51c0b3","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/jcs.test.mjs && node test/tap-unit.mjs && node test/tap-proc.mjs && node test/tap-cli.mjs && node test/tap-window.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/site-parity.test.mjs && node test/site-replay-equivalence.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.22.0_1783489426247_0.06434539189800903","host":"s3://npm-registry-packages-npm-production"}},"0.23.0":{"name":"@promptia-labs/agent-receipt","version":"0.23.0","license":"MIT","_id":"@promptia-labs/agent-receipt@0.23.0","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"bin":{"agent-receipt":"dist/cli.js"},"dist":{"shasum":"c0193fa2b477b7c690f453960acff6041caa181e","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.23.0.tgz","fileCount":198,"integrity":"sha512-oKuoYYjmile/5zI5q3xHc//M6iYTRiVOu1tekbhPKMmAYMuNqtinyjiho9Jcga7mE4pyApD8sF4s+tlvJnbLEA==","signatures":[{"sig":"MEUCIAhf1hRRLT7azVgZt00sLPkL/9gwo8pQ/4u04JggdJmvAiEA5xp0fcEt/xtUxvRIkuIO0M86TbUP74FTphmiX06D2MI=","keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U"}],"unpackedSize":1029522},"main":"./dist/index.js","type":"module","types":"./dist/index.d.ts","engines":{"node":">=18"},"exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"gitHead":"677aebb987e42e528aad0b76dbfda85c7653cebb","scripts":{"test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/jcs.test.mjs && node test/tap-unit.mjs && node test/tap-proc.mjs && node test/tap-cli.mjs && node test/tap-window.mjs && node test/termcard.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/site-parity.test.mjs && node test/site-replay-equivalence.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs","prepack":"npm run build","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts"},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"repository":{"url":"git+https://github.com/koscom2023-beep/agent-receipt.git","type":"git"},"_npmVersion":"10.8.2","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","directories":{},"_nodeVersion":"20.20.0","dependencies":{"zod":"^3.23.8","yaml":"^2.5.1","minimatch":"^9.0.5"},"publishConfig":{"access":"public"},"_hasShrinkwrap":false,"devDependencies":{"tsx":"^4.19.2","typescript":"^5.6.3","@types/node":"^25.9.1"},"_npmOperationalInternal":{"tmp":"tmp/agent-receipt_0.23.0_1783493776314_0.835221363187115","host":"s3://npm-registry-packages-npm-production"}},"0.24.0":{"name":"@promptia-labs/agent-receipt","version":"0.24.0","description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","license":"MIT","repository":{"type":"git","url":"git+https://github.com/koscom2023-beep/agent-receipt.git"},"homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"type":"module","bin":{"agent-receipt":"dist/cli.js"},"main":"./dist/index.js","types":"./dist/index.d.ts","exports":{".":{"types":"./dist/index.d.ts","import":"./dist/index.js"},"./package.json":"./package.json"},"engines":{"node":">=18"},"publishConfig":{"access":"public"},"scripts":{"build":"tsc && node -e \"require('fs').chmodSync('dist/cli.js', 0o755)\"","test":"npm run build && tsx test/run-fixtures.ts && tsx test/close-recon-tool-output.test.ts && node test/unit-newlogic.mjs && node test/capture-actions.test.mjs && node test/shareproof.test.mjs && node test/proofbundle.test.mjs && node test/attest.test.mjs && node test/anchor.test.mjs && node test/rekor-anchor.test.mjs && node test/capture-chain.test.mjs && node test/capture-proof.test.mjs && node test/multiagent-envelope.test.mjs && node test/cursor-hook.test.mjs && node test/controls.test.mjs && node test/crosswalk.test.mjs && node test/insights.test.mjs && node test/risk.test.mjs && node test/audit-fixes.test.mjs && node test/lock-keys.test.mjs && node test/round3-audit.test.mjs && node test/guard.test.mjs && node test/forbid-actions.test.mjs && node test/policy-pack.test.mjs && node test/gate.test.mjs && node test/verdict.test.mjs && node test/costdiag.test.mjs && node test/failondone.test.mjs && node test/quickstart.test.mjs && node test/verifyproof-inbox.test.mjs && node test/review-sidecar.test.mjs && node test/action-comment.test.mjs && node test/waste.test.mjs && node test/budget.test.mjs && node test/loop-guard.test.mjs && node test/reviewfocus.test.mjs && node test/cost.test.mjs && node test/modelswap.test.mjs && node test/commit-receipt.test.mjs && node test/redact-json.test.mjs && node test/env-session.test.mjs && node test/claimdiff.test.mjs && node test/recon-freeze.test.mjs && node test/ledger-enrich.test.mjs && node test/ledger-merkle.test.mjs && node test/evidencekernel.test.mjs && node test/grade.test.mjs && node test/decompose.test.mjs && node test/numberops.test.mjs && node test/range.test.mjs && node test/jcs.test.mjs && node test/tap-unit.mjs && node test/tap-proc.mjs && node test/tap-cli.mjs && node test/tap-window.mjs && node test/termcard.test.mjs && node test/gitfacts.test.mjs && node test/research-verify.test.mjs && node test/council-verify.test.mjs && node test/vreceipt.test.mjs && node test/graph.test.mjs && node test/dogfood.test.mjs && node test/sdk-examples.test.mjs && node test/core-boundary.test.mjs && node test/site-kernel.test.mjs && node test/site-parity.test.mjs && node test/site-replay-equivalence.test.mjs && node test/bench.test.mjs && node test/merkle.test.mjs && node test/predicate.test.mjs && node test/predicate-sign.test.mjs && node test/genclaim-llm.test.mjs && node test/otel.test.mjs && tsx test/capture-golden.ts --check && node scripts/dogfood.mjs","test:golden":"tsx test/capture-golden.ts --check","test:golden:update":"tsx test/capture-golden.ts","prepack":"npm run build","guard":"tsx src/cli.ts","dogfood":"node scripts/dogfood.mjs"},"dependencies":{"minimatch":"^9.0.5","yaml":"^2.5.1","zod":"^3.23.8"},"devDependencies":{"@types/node":"^25.9.1","tsx":"^4.19.2","typescript":"^5.6.3"},"_id":"@promptia-labs/agent-receipt@0.24.0","gitHead":"349db473113e12eae41db9b89fb099d43512fd08","_nodeVersion":"20.20.0","_npmVersion":"10.8.2","dist":{"integrity":"sha512-oKWFayf8kPqWSolDxRcHABPqaRXIIK1sqs0LekE59s//8zpcjh40YTqM2VciIo77H17l2x4OGTm0tzlQLhfEsg==","shasum":"eba9c14e5eb4b428ef8216e748c628dcf16e03da","tarball":"https://registry.npmjs.org/@promptia-labs/agent-receipt/-/agent-receipt-0.24.0.tgz","fileCount":200,"unpackedSize":1043242,"signatures":[{"keyid":"SHA256:DhQ8wR5APBvFHLF/+Tc+AYvPOdTpcIDqOhxsBHRwC7U","sig":"MEYCIQCv6JdGxjj1ULCGYsds9VJcF0XqHhh3HdVXwTFrjlx9eAIhALZgd3FpjLD3RyPPfS0tNBKysWULBZBoltBls6YVX73Z"}]},"_npmUser":{"name":"promptia","email":"sah4444@naver.com"},"directories":{},"maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"_npmOperationalInternal":{"host":"s3://npm-registry-packages-npm-production","tmp":"tmp/agent-receipt_0.24.0_1783654233058_0.730162889321311"},"_hasShrinkwrap":false}},"time":{"created":"2026-06-02T11:45:34.676Z","modified":"2026-07-10T03:30:33.356Z","0.2.0":"2026-06-02T11:45:34.997Z","0.2.1":"2026-06-02T11:58:40.889Z","0.7.0":"2026-06-02T14:44:39.741Z","0.8.0":"2026-06-03T05:45:37.632Z","0.8.1":"2026-06-03T06:04:16.685Z","0.9.0":"2026-06-03T12:54:25.287Z","0.9.1":"2026-06-03T14:10:02.435Z","0.10.0":"2026-06-24T04:30:21.147Z","0.11.0":"2026-06-30T12:14:04.731Z","0.11.1":"2026-06-30T12:24:20.807Z","0.11.2":"2026-06-30T13:18:29.787Z","0.11.3":"2026-07-01T04:08:32.355Z","0.11.4":"2026-07-01T05:08:39.546Z","0.11.5":"2026-07-01T06:33:21.469Z","0.12.0":"2026-07-02T04:54:27.141Z","0.12.1":"2026-07-02T05:07:43.096Z","0.13.0":"2026-07-02T12:57:21.689Z","0.14.0":"2026-07-03T02:26:20.856Z","0.15.0":"2026-07-03T08:21:17.361Z","0.15.1":"2026-07-03T09:29:04.795Z","0.15.2":"2026-07-03T14:55:35.075Z","0.15.3":"2026-07-05T07:49:03.738Z","0.16.0":"2026-07-06T14:34:05.872Z","0.16.1":"2026-07-06T14:54:35.308Z","0.17.0":"2026-07-06T15:43:52.096Z","0.20.0":"2026-07-07T05:19:52.435Z","0.20.1":"2026-07-07T08:11:13.648Z","0.20.2":"2026-07-07T11:00:35.078Z","0.21.0":"2026-07-08T04:05:56.615Z","0.22.0":"2026-07-08T05:43:46.378Z","0.23.0":"2026-07-08T06:56:16.518Z","0.24.0":"2026-07-10T03:30:33.228Z"},"bugs":{"url":"https://github.com/koscom2023-beep/agent-receipt/issues","email":"support@promptia.kr"},"license":"MIT","homepage":"https://github.com/koscom2023-beep/agent-receipt#readme","repository":{"type":"git","url":"git+https://github.com/koscom2023-beep/agent-receipt.git"},"description":"AI work audit receipts — verifies and records what an AI coding agent actually changed in your local git tree. Provides git-based evidence for compliance review (not a compliance guarantee).","maintainers":[{"name":"promptia","email":"sah4444@naver.com"}],"readme":"# agent-receipt\n\n> npm **`@promptia-labs/agent-receipt`** · CLI **`agent-receipt`** · local-first, no account, no server\n\n**Contract an AI coding session → verify what actually happened → keep a sealed receipt.**\n\nagent-receipt is a **local audit tool for AI coding sessions** (Claude Code / Cursor): declare what the agent may touch (a scope contract — `allowed` / `denied` paths), let it work, then close the session with a **verdict backed by the real git diff — never the agent's own claims**:\n\n```text\nagent-receipt done: my-task\n판정: PASS ✅  (게이트 판정 — 점수 아님)          # a gate — PASS / PASS_WITH_WARNINGS / FAIL / INCOMPLETE. Not a score.\n계약: kind=implementation · allowed 1 globs · denied: .env*\n  · 계약 준수 · 필수 검사 통과 · 경고 신호 없음   # every verdict is backed by per-item facts\n```\n\n**Three audits, one receipt:**\n\n| Audit | Question it answers | Receipt it produces |\n|---|---|---|\n| **Change Audit** | *What did the AI actually **do** to my git repo?* — did it stay inside the contract, what landed, what was bypassed, plus beyond-git actions (even failed/denied attempts) | Work Receipt — `schemaVersion: \"1.0\"`, git-measured, tamper-evident |\n| **Evidence Audit** | *Is what the AI **said** actually true?* — quotes, numbers, dates, git facts, versions, cited receipts… **15 deterministic check kinds, no LLM judging LLMs** | `kind: \"verification-receipt\"` (`evidence/1`) |\n| **Cost Audit** *(supporting)* | *What did this session actually **cost**?* — real per-message usage from the local transcript, where it leaks, when a fresh session is cheaper | `agent-receipt cost` — an estimate, not an invoice |\n\n> **Why trust it:** deterministic verdicts (same input → same verdict) · sealed receipts (sha256, replayable) · third-party seal (Rekor) · in-toto attestation · Merkle transparency log — **all local, no account, no server.**\n\n> **Honest scope on cost:** `cost` reads Claude Code's local transcript (real per-message usage) and applies list pricing — an **estimate, not an invoice** (no discounts/intro). It shows where the money goes and signals when a fresh session would be cheaper; it does **not** cut your bill directly, and it never shows a made-up \"savings\" number. High cache-read is not waste — the cache saved you ~90%.\n\n> **agent-receipt proves — and, if you opt in, prevents.**\n> Its core job is mechanical, after-the-fact **evidence** — of what landed in git, and of whether stated evidence matches its sources (**git-based evidence for compliance review — not a compliance guarantee**). On top of that, an opt-in **real-time scope guard** (`policy guard: block`) stops writes to contract/policy-forbidden paths *before the tool runs* — the denied attempt itself becomes chained evidence. Default stays warn-only: nothing blocks unless you ask it to.\n\nThe receipt is **review-ready** (v0.20): it opens with a ten-second executive block (plain-sentence contract KO/EN · four review buckets in the reviewer's reading order · session timeline), carries an optional self-reported `--objective`, and closes with a recorded human decision — `review approve | reject | note`. The recipient re-checks the whole hand-off **offline in one command** (`verify-proof`), and the pile becomes a filterable local **`inbox`**.\n\nOne-page setup (contract → guard → receipt → PR comment): [docs/QUICKSTART.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/QUICKSTART.md)\n\n---\n\n## Quick Start\n\nInstall globally — first time? `agent-receipt quickstart` prints exactly what each setup step writes (and only writes under `--write`). The everyday flow is **four verbs**:\n\n```bash\nnpm install -g @promptia-labs/agent-receipt\ncd <your repo>\nagent-receipt quickstart --write               # contract + policy + capture hooks (print-first; idempotent)\n\nagent-receipt begin --kind implementation --objective \"refund API, no billing-model changes\"\n#   … the agent works …\nagent-receipt done                             # 4-value verdict + receipt + ordered next steps ①②③\nagent-receipt share                            # ten-second proof HTML (= share-proof · --client / --bundle)\nagent-receipt review approve --receipt <p>     # or: reject / note — recorded on the receipt (self-reported)\n\nagent-receipt inbox                            # the pile, filterable (FAIL only · denied-path · unreviewed …)\nagent-receipt verify-proof <bundle-dir>        # recipient side: re-check a hand-off bundle offline\n```\n\nThe longer loop is still there when you want it — `commit-check` (pre-commit gate), `audit-pack` (evidence bundle), `reset` (clear baseline):\n\nRe-verify a saved bundle later with `agent-receipt replay --pack <dir>`. Full command list: `agent-receipt help --all`.\n\n> The lower-level commands (`start` / `prompt` / `verify` / `check` / `claims` / `receipt`) still exist — `begin` and `done` simply compose them. See **Commands** below. Feature coverage vs the design docs: [coverage](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/coverage.md); recipes (worktree/CI/hooks): [recipes](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/recipes.md).\n\nOnce installed, the CLI is invoked as `agent-receipt`. (The single-letter `ag` alias was dropped to avoid clashing with other tools.)\n\n### Verification engine quick start\n\nThe second track — checking whether an AI's *stated evidence* holds up — is a separate loop, independent of git. A 60-second real example (markdown input, frozen grammar; JSON works identically):\n\n```bash\ncat > vendor-notes.md <<'EOF'\n# Vendor security review — Acme Cloud\n\nAcme Cloud completed a SOC 2 Type I audit in March 2026. A Type II audit\nis scheduled for Q1 2027 but has not started.\nEOF\n\ncat > report.md <<'EOF'\n# Is Acme Cloud safe to send customer data to?\n\n- statement: Acme completed a SOC 2 Type I audit in March 2026\n  quotedText: \"completed a SOC 2 Type I audit in March 2026\"\n  sourceFile: vendor-notes.md\n\n- statement: Acme has passed a SOC 2 Type II audit\n  quotedText: \"has passed a SOC 2 Type II audit\"\n  sourceFile: vendor-notes.md\nEOF\n\nagent-receipt research verify --file report.md --out vr/r1.json\n```\n\nClaim 1 checks out. Claim 2 — the classic quiet upgrade from *Type I completed* to *Type II passed* — **is not in the source**:\n\n```\n[2] Acme has passed a SOC 2 Type II audit\n    인용 : has passed a SOC 2 Type II audit  → not-found\n    ✗ FAIL — 근거가 출처와 불일치(날조/수치·날짜오류)\n결과: verified 1 · FAIL 1 · advisory 0\n$ echo $?   # → 1  (a real CI gate, not a report you must remember to read)\n```\n\n(The CLI prints in Korean; the JSON receipt and exit codes are language-neutral.) Then read what accumulates:\n\n```bash\nagent-receipt graph view --dir vr --out browser.html    # Evidence Browser (self-contained HTML)\nagent-receipt graph failures --dir vr --by check        # triage\nagent-receipt graph diff --base-dir vr-before --head-dir vr-after   # CI regression gate (exit 1 on new failures)\n```\n\nChecks go far beyond quotes — git facts (`statedCommit` / `statedChangedFile` / `statedDiffText`: *\"commit X changed file Y\"* verified against actual history), semver-range `version`, JSON `schema`, `file` existence, cited-`receipt` seal replay, `artifact` shape. Full table: [EVIDENCE_SPEC.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/EVIDENCE_SPEC.md#check-kinds--statuses). Every flag: [Verification engine commands](#verification-engine-commands).\n\n### Verify your install (real-use smoke check)\n\nBefore relying on it, confirm which binary/version you are actually running:\n\n```bash\nnpm install -g @promptia-labs/agent-receipt@latest\nagent-receipt --version        # prints the version (works with no contract / no git repo)\nwhich agent-receipt            # which binary is on PATH\nagent-receipt doctor           # shows binary path, current version, npm latest, update status\n```\n\n**Dogfood principle.** Real-world verification is done against the **global install or `npx ... @latest`** — that is what your agents actually invoke. Calling a local `node dist/cli.js` directly is **developer-internal** verification only; do not report it as real-use verification. If `doctor` reports a newer `npm latest`, run `npm install -g @promptia-labs/agent-receipt@latest`.\n\n**SDK surface & stability tiers** (Stable / Provisional / internal, semver promise, examples): see [docs/SDK.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/SDK.md).\n\nThis repo also dogfoods its own verification engine: every `npm test` run verifies fixed fixtures (`fixtures/dogfood/`) and accumulates verification receipts locally (`npm run dogfood` to run it alone), so `graph history` / `diff` / the `tampered` flag are continuously exercised against real self-produced data (non-blocking; correctness is gated by `test/dogfood.test.mjs`).\n\n### Recommended `.gitignore` (tool outputs)\n\n`init` never edits your `.gitignore` (guidance only). Add this block so `.agent-guard/` tool outputs stay out of git — keeping `verify` / `status` / `close-recon` noise-free. The contract (`contract.yaml`), policy (`policy.yaml`), and the agent README are committable and intentionally **not** ignored.\n\n```gitignore\n# agent-receipt local tool outputs\n.agent-guard/session.json\n.agent-guard/receipts/\n.agent-guard/audit-packs/\n.agent-guard/anchors/\n.agent-guard/notes/\n.agent-guard/decisions/\n.agent-guard/keys/\n.agent-guard/dashboard.html\n.agent-guard/**/*.sig.json\n.agent-guard/**/*.approval.json\n```\n\n---\n\n## Examples — see it work in 30 seconds\n\nThree runnable examples show the verification engine catching real problems — each exits `1` on a fabricated claim, so it drops straight into CI:\n\n- **[`examples/ai-coding-audit`](examples/ai-coding-audit)** — verify what an AI coding agent (Cursor / Claude Code / Copilot) *claimed* it changed against real git history. Catches scope violations and hallucinated commits.\n  ```bash\n  agent-receipt research verify --file examples/ai-coding-audit/agent-report.md\n  ```\n- **[`examples/rag-grounding`](examples/rag-grounding)** — verify that a RAG answer's claims are literally grounded in the retrieved context (deterministic faithfulness — no LLM judge).\n  ```bash\n  agent-receipt research verify --file examples/rag-grounding/answer-claims.md\n  ```\n- **[`examples/audit-journal-entry`](examples/audit-journal-entry)** — verify AI-generated accounting entries by recomputing debit = credit balance and checking the cited evidence.\n  ```bash\n  agent-receipt research verify --file examples/audit-journal-entry/entries.md\n  ```\n\nEach prints per-claim `verified` / `FAIL` with the deterministic evidence (expected ↔ actual), and seals the result into a receipt you can `replay` to detect tampering.\n\n---\n\n## Why this exists\n\nWhen an AI agent edits your repo, \"it said it only changed the auth module\" is a claim, not a fact. agent-receipt turns the claim into a checkable receipt:\n\n- **Hooks / permissions** are *preventive* — they block a command at the moment it runs.\n- **agent-receipt** is *evidentiary* — it reads the resulting git diff and reports what was actually changed, staged, or left untracked, and whether any forbidden path was touched.\n\nIt is local-first by design:\n\n- **No code upload.** Everything runs on your machine.\n- **No account, no API key.** The core flow makes **no network call**; the only network is *opt-in* — `anchor --upload` (registers a *hash* to the public Rekor log) and `doctor`'s version check (disable with `AGENT_RECEIPT_NO_NET=1`).\n- **Operates on your local git working tree** via ordinary git commands.\n\n---\n\n## The model — six objects, not fifty commands\n\nThis describes the **Work track** — proving what an AI did *to your git repo*. A second, independent track — proving whether an AI's *stated evidence* is true — is covered in [Verification engine](#verification-engine) below; it has its own receipt kind.\n\nUnder the ~50 Work-track commands there is **one pipeline over six objects.** The commands are just verbs that produce or transform them:\n\n```\nAI Session ─▶ Evidence ─▶ Verification ─▶ Receipt ─▶ Ledger ─▶ Audit ─▶ Publication\n  begin        capture       verify         receipt    ledger    risk      share-proof\n  start        claims        check          done                  controls  anchor\n               git diff      reconcile                             insights  export\n```\n\n- **Session** — one unit of AI work (`begin` / `start`).\n- **Evidence** — what happened: the agent's *claim*, the *git diff*, and beyond-git actions (`capture`).\n- **Verification** — is it true? `verify` + `check`, and reconcile the claim against git.\n- **Receipt** (a **Work Receipt**) — the sealed fact + integrity hash (`receipt` / `done`). A *verified, tamper-evident* record, not a bare note.\n- **Ledger** — append-only, hash-chained trail (`ledger`).\n- **Audit** — read-only judgment: `risk` · `controls` · `insights`.\n- **Publication** — how a fact leaves your machine: `share-proof` · `anchor`.\n\nFull mapping to the actual code: [`docs/EVIDENCE_MODEL.md`](docs/EVIDENCE_MODEL.md).\n\n---\n\n## AI work audit protocol\n\nBeyond a single receipt, agent-receipt closes the evidence loop with a short, git-native audit flow:\n\n```\nbegin → (agent works) → done → explain (if FAIL)\n      → audit-pack → attest (in-toto style) → commit with trailer\n      → ledger appends one line → later: replay re-verifies the pack\n                                   ↑ if something breaks, incident scans the trail\n```\n\n- `begin` / `done` collapse the everyday loop into two commands.\n- `policy.yaml` holds standing rules (`forbidAlways` / `requireApprovalFor` / `protectAlways`); the **contract** scopes one task, the **policy** governs the project.\n- `commit-check` gates the moment before you commit (it never commits for you) and prints a `Agent-Receipt:` / `Agent-Contract:` / `Agent-Policy:` trailer.\n- `audit-pack` bundles the evidence; `replay --pack <dir>` re-checks it later (content hash + commit existence = **tamper-evident**, not \"non-forgeable\").\n- `ledger.jsonl` is an append-only local trail (metadata only — no diffs/values). Flat file only.\n\n> **Scope of evidence.** This tool is **git-working-tree based**. It cannot see `.gitignore`d files, files outside the repo, OS commands, DB writes, or external-service changes. It provides **git-based evidence for compliance review — it is not a compliance guarantee.** An AI's completion report is always a *claim*; only git state is *measured*.\n\nFull command list: `agent-receipt help --all`.\n\n---\n\n## Verification engine\n\n*Is the AI's evidence — a citation, a number, a date, a hash, a signature, a git fact, a schema, a version — actually true against its source?*\n\nEverything above (the **Work track**) proves what an AI did *to your git repo*. This second, independent track proves whether what the AI *said* is true. It takes any JSON report of claims and checks each one deterministically — no LLM judgment, no network required unless you ask for it.\n\n```\nresearch/council verify --file <report.json|report.md> ─▶ Evidence Kernel ─▶ --out Verification Receipt ─▶ graph {query,view,failures,diff,history,subjects}\n        (claims + sources in;                   (evaluateClaim: 15 check kinds —     (a separate,                (read model: triage,\n         .md = frozen grammar)                    citation/number/date/link/            sealed receipt kind)         regression gate, timelines,\n                                                  hash/signature/commit/                                             a status board, exceptions)\n                                                  fileChanged/diffContains/\n                                                  schema/version/file/receipt/artifact)\n```\n\n- **`research verify --file <report.json>`** — check a set of claims (quotes, numbers, dates, hashes, signatures, git facts, schemas, dependency versions) against their sources.\n- **`council verify --file <decision.json>`** — check a set of *decisions*' supporting claims the same way. It verifies decisions already made; it does **not** run a meeting.\n- Both call the same **Evidence Kernel** (`evaluateClaim`) — deterministic, model-agnostic checks across 15 kinds (full table: [EVIDENCE_SPEC.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/EVIDENCE_SPEC.md#check-kinds--statuses)). citation/number/range/date/hash/signature/commit/fileChanged/diffContains/schema/version are *positive* evidence (they can make a claim `verified`); `link` is well-formedness only (*advisory*). Each positive check also carries an **evidence grade** — **A** (recompute: number/hash/signature) > **B** (compare: citation/git/schema/…) > **C** (form) — and a claim with no basis to judge **abstains** rather than being over-assured. The three git-fact kinds (commit/fileChanged/diffContains) let a claim be checked against actual repository history, not just static documents — e.g. catching \"the config already supports X\" when no commit ever changed the config that way.\n- **`--out <path>`** seals the result into a **Verification Receipt** — a receipt kind *separate* from the Work Receipt above: `schemaVersion: \"evidence/1\"`, `kind: \"verification-receipt\"`. Its provenance is tiered: `verified` = this tool recomputed the fact itself (e.g. re-hashed an input file and it matched); `reported` = a self-reported field (a model name, a commit, a timestamp) — never laundered into `verified`.\n- **`graph`** reads accumulated Verification Receipts — see [Verification engine commands](#verification-engine-commands) below for the full list (`query` / `view` / `failures` / `diff` / `history` / `subjects`).\n- **`spec`** publishes the check format as a machine-readable JSON Schema — the code generates the schema from the same registry `evaluateClaim` uses, so the code *is* the spec.\n\n**Two receipt kinds, one CLI.** The Work track and the Verification track share one CLI, one deterministic-checking philosophy, and the same honesty rules (self-reported fields are always labeled; a check either passed, failed, or had no basis to judge — never a score). They do **not** share a receipt schema, a `replay` target, or downstream readers:\n\n| | Work Receipt | Verification Receipt |\n|---|---|---|\n| Produced by | `done` / `receipt --committed` | `research verify --out` / `council verify --out` |\n| Proves | the AI kept the contract *in this git repo* | the AI's *stated evidence* matches its source |\n| Schema | `schemaVersion: \"1.0\"` | `schemaVersion: \"evidence/1\"`, `kind: \"verification-receipt\"` |\n| Re-verified by | `replay --pack <audit-pack-dir>` | `replay --receipt <path>` |\n| Consumed by | `share-proof` · `ledger` · `controls` · `insights` · `risk` · `anchor` | `graph query/view/failures/diff/history/subjects` · the SDK |\n\n**SDK.** `import { evaluateClaim, buildGraphDiff, buildHistory, ... } from \"@promptia-labs/agent-receipt\"` exposes the Verification-track functions directly — Stable (semver-promised) and Provisional (may change without notice) tiers. See [docs/SDK.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/SDK.md) and the runnable [examples/](https://github.com/koscom2023-beep/agent-receipt/tree/v0.1-verify-check-split/examples).\n\n**Honest limits.** Fingerprints (`cfp1:`) are text-identity v1 — a reworded claim is a *different* claim, not a semantic match. \"Resolved\" in `diff`/`history` means *no failure with that key at this point*, not proof of a fix. Full spec: [docs/EVIDENCE_SPEC.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/EVIDENCE_SPEC.md).\n\n---\n\n## Core workflow\n\n1. **Create a contract** — `agent-receipt init --preset generic` writes `.agent-guard/contract.yaml` (and an agent-facing `.agent-guard/README.md`).\n2. **Brief the agent** — `agent-receipt prompt` prints a paste-in instruction block listing the allowed/denied paths and rules.\n3. **Let the agent work.**\n4. **Verify state** — `agent-receipt verify` checks the working tree (branch / scope / denied paths / staged / untracked / NUL). It does **not** run your tests.\n5. **Run required checks** — `agent-receipt check` runs the contract's `required_checks.commands` (tsc/tests/etc.).\n6. Only when **both** pass, stage the allowed files yourself and commit.\n\n`verify` and `check` are deliberately separate: `verify` inspects *state* (fast, no command execution); `check` runs *commands*. A passing `verify` is **not** \"tests passed.\"\n\nIf you omit `--contract`, the contract is auto-discovered (see below).\n\n---\n\n## Commands\n\n| Command | What it does | Needs git repo |\n|---|---|---|\n| `presets` | List the built-in presets (`generic` / `nextjs-supabase` / `promptia` / `strict` / `relaxed`) with when-to-use notes. | no |\n| `init --preset <generic\\|nextjs-supabase\\|promptia\\|strict\\|relaxed>` | Create `.agent-guard/contract.yaml` + `.agent-guard/README.md`. Refuses to overwrite existing files. | no |\n| `draft-contract [--preset <name>] [--out <path>] [--print]` | Generate a contract draft (non-interactive): scans the repo's top-level dirs for `allowed_paths` candidates, or copies a preset. Defaults to stdout; writes only with `--out` (never overwrites). | no |\n| `review` | Commit-time human checklist (read-only): scope tight enough? denied covers `.env`/lock/migrations/deploy? receipt at default location? Distinct from `lint`. | no |\n| `start` | Record a baseline of the current working tree to `.agent-guard/session.json` (see Baseline mode). Refuses if a denied path is already dirty, or if a session already exists. | yes |\n| `status` | Print a read-only summary: contract scope, baseline (session) state, branch, current changes. | yes |\n| `reset` | Remove the baseline `.agent-guard/session.json` (leaves `contract.yaml`/`README.md` intact). | no |\n| `verify [--json]` | State checks only (no commands run). Human report, or a stable one-line JSON with `--json`. | yes |\n| `check` | Run `required_checks.commands`; all must match their `required_exit`. | no |\n| `prompt [--cursor\\|--claude]` | Print a paste-in instruction block for the agent. Variants differ only in header/tone; the completion-claim JSON is identical (so `claims` works either way). | no |\n| `report [--type developer\\|client\\|audit] [--out <file>]` | Run `verify` and write a Markdown report — `developer` (default, detailed), `client` (trimmed), or `audit` (contract/policy/receipt/environment-centric). | yes |\n| `receipt [--format json\\|md\\|client-md] [--redact] [--committed] [--out <file>]` | Run `verify` + `check` and save an **AI Work Receipt** to `.agent-guard/receipts/` (change magnitude, critical-path attestation, environment/provenance, integrity `contentHash`). `client-md` is a trimmed client-facing render; `--redact` best-effort masks secret-looking values. **`--committed`** measures the **just-made commit** (`parent..HEAD`, first-parent for merges; empty-tree base for the root commit) instead of the working tree — a `measuredFrom: committed:<base>` marker is added (metadata, excluded from `contentHash` → default receipts stay byte-identical). This is the mode the **post-commit evidence hook** uses, so a receipt is produced even for a commit made with `git commit --no-verify`. Saving outside the default dir warns (verify won't exclude it). | yes |\n| `receipts [--latest\\|--cat\\|--dir]` | Find saved receipts under `.agent-guard/receipts/`: list newest-first (default), `--latest` summary (ok/contractId/timestamp/contentHash/magnitude), `--cat` latest content, `--dir` directory path. No receipts → guidance, exit `0`. | no |\n| `mode` | Read-only explanation of whether you're in **task** or **daily** flow (contract/session/baseline state + recommended next command). No file written. | no |\n| `claims --file <claim.json>` | Compare an agent's completion report (JSON) against the actual git state — surfaces hidden/over-claimed changes as **AI said / Git says**. Mismatch → exit `1`. | yes |\n| `explain` | Explain *why* the tree is PASS/FAIL (branch / scope / denied / magnitude / critical paths) with recovery hints. Exit mirrors `verify`. | yes |\n| `audit [--json]` | Local audit summary over `.agent-guard/receipts/`: count, latest, PASS/FAIL, critical-touched, unique `contentHash`. Read-only (no auto-append). | no |\n| `insights [--since <n>] [--format md\\|json]` | Read-only **local trend & recurrence** over saved receipts that `audit` doesn't give: prior-vs-recent FAIL-rate / critical-touched, per-contract recurring failures, and a descriptive **watch** list. **Descriptive only — no scores, grades, or predictions**; prints a *small-sample / directional-only* caveat at low counts. Team/org aggregation is out of scope (local, single-repo). | no |\n| `risk [--receipt <p>] [--format md\\|json]` | Read-only **AI-work risk signals** for one receipt — surfaces, from data the receipt already holds, *what landed in git with review/scope/stability risk*: denied-path & out-of-scope & critical-path touches, **unreviewed-acceptance** (large change + no passing checks + zero test-path files added — paths only, never judging test quality), and capture's sensitive/unstable actions (secret read / external call / created-then-deleted). **NOT a code-quality or technical-debt measurement** (that's static-analysis/AST territory) — provenance facts only, no scores/grades. Points to `claims`/`capture show`/`insights` for the rest. | no |\n| `dashboard [--out <path>]` | Render a single self-contained static HTML (no CDN/network) of all receipts. Default `.agent-guard/dashboard.html` (excluded by `verify`). | no |\n| `keys init` | Generate an ed25519 key pair under `.agent-guard/keys/` (Node built-in crypto). Warns to gitignore the key dir (does not edit `.gitignore`). | no |\n| `sign --receipt <path>` | Sign a receipt's bytes (ed25519); writes sidecar `<receipt>.sig.json`. | no |\n| `verify-signature --receipt <path>` | Verify the sidecar signature with the public key. PASS → `0`, FAIL → `1`. | no |\n| `approve --receipt <path> [--note <text>]` | Record a local approval sidecar `<receipt>.approval.json` (approver from git config, timestamp, contentHash, note). No git commit, no network. | no |\n| `approvals` | List local approval sidecars. | no |\n| `export --format <slack\\|json\\|github-pr\\|otel\\|langfuse> --receipt <path>` | Print an external-transport payload **preview to stdout only** (Slack blocks / summary JSON / PR-comment markdown / OTLP log / Langfuse trace). Never POSTs; no token/URL. | no |\n| `pre` | Pre-start check (correct branch, nothing already staged). | yes |\n| `doctor` | Environment/setup health check (git / contract / baseline). | no |\n| `lint` | Advisory contract-quality checks (scope / denied / forbidden_actions). | no |\n| `help` | Usage. | no |\n| `run` | Alias for the no-args single-command routing below. | — |\n| *(no args)* | Single-command routing: inspects state and points to the next step (`init` / `start` / `check`), or runs `verify` when a baseline exists; on PASS it suggests `check` / `receipt` / `claims`, on FAIL it suggests `explain` / `status` / `reset`. | — |\n\n### Audit workflow commands\n\n| Command | What it does | Needs git repo |\n|---|---|---|\n| `begin [--cursor\\|--claude\\|--generic]` | Start a task in one step: check `policy`, record the baseline (`start`), and print the paste-in agent instructions (`prompt`). | yes |\n| `done [--claim <c.json>] [--client] [--ledger]` | Finish a task in one step: `verify` + `check`, save the receipt, summarize, optionally reconcile a `--claim` and append to the ledger. | yes |\n| `policy init [--profile <solo-founder\\|vibe-coder\\|agency-client\\|team-strict\\|promptia>] \\| check \\| show` | Manage `.agent-guard/policy.yaml` — **standing** project rules (`forbidAlways` / `requireApprovalFor` / `protectAlways` / `requireReceipt` …). The contract scopes one task; the policy governs the project. | check: yes |\n| `commit-check` | Gate just before you commit: `verify` PASS, `check` PASS, a receipt matching the current change, and policy rules satisfied. **Never commits.** On pass, prints an `Agent-Receipt:` / `Agent-Contract:` / `Agent-Policy:` commit trailer. | yes |\n| `trailer` | Print the commit trailer only (hashes/paths, no values) to paste into a commit message. | yes |\n| `audit-pack [--out <dir>] [--claim <c.json>] [--redact] [--ledger]` | Bundle the evidence (contract, policy, receipt, claim+verify, approval, signature, environment, manifest) into `.agent-guard/audit-packs/<ts>/`. A review bundle — **tamper-evident, not a non-forgeable proof.** | yes |\n| `replay --pack <dir>` (alias `verify-pack`) | Re-verify a saved **audit-pack** (Work Receipt) against the current repo: recompute the receipt `contentHash`, confirm the commit exists. Detects tampering. Cannot reproduce external DB/OS effects. (A **Verification Receipt** has its own `replay --receipt <path>` mode — see [Verification engine commands](#verification-engine-commands).) | yes |\n| `ledger [--json]` · `ledger rebuild` | Append-only local trail `.agent-guard/ledger.jsonl` — one metadata line per receipt (no diffs/values). `rebuild` regenerates it from `receipts/`. | no |\n| `attest --receipt <p> \\| --pack <dir>` | Emit an in-toto **style** Statement (draft) to stdout — provenance over the receipt + commit. Not an SLSA-level claim; tamper-evident, not non-forgeable. | no |\n| `anchor [--receipt <p>]` · `anchor --upload` | Wrap a receipt in a DSSE-signed in-toto Statement (auto-generates an ed25519 key) and either print Rekor-registration instructions (default, offline) or, with **`--upload`**, register it to the public **Rekor** transparency log in one command (Node `fetch` + built-in crypto — no external tools), then write a `<receipt>.rekor.json` sidecar. Seals **time & existence** via a third party; **not** a keyless identity proof. | no |\n| `controls [--receipt <p>] [--format md\\|json] [--redact]` | Read-only projection of a saved receipt → **evidence *relevant to* security/AI controls** (SOC 2 TSC, EU AI Act Art 12/19/26(6), ISO/IEC 42001 — the last marked `likely`, verify against the purchased standard). It maps signals (secret-file reads, external calls, denied-path hits, required checks, critical paths, the tamper-evident log, a Rekor anchor) to control families with a per-signal **\"does not prove\"** caveat. **Never asserts compliance** — wording is limited to *evidence relevant to / supports*; consult your assessor. Each signal is tagged with an **evidence-reliability tier** (audit-evidence hierarchy, AS 1105/ISA 500: **A** external/Rekor > **B** git-measured > **C** capture self-reported). Does not modify the receipt. | no |\n| `incident [--since <n>]` | Scan recent receipts/ledger for failures, critical-path changes, missing approvals, last PASS. Read-only; no auto-recovery, no scoring. | no |\n\n> **Retention & independent verification** are provided by the commands above — there is no separate `archive`/`verify-proof` command (it would duplicate them). **Retention:** `ledger` is the append-only, hash-chained long-term trail and `audit-pack` bundles per-task evidence; the **retention *period*** (e.g. EU AI Act's ≥6-month floor) is an operational policy you set, not a tool feature. **Independent verification by a recipient:** `replay --pack` re-checks a bundle's `contentHash` + commit, `verify-signature` checks the ed25519 sidecar, and a Rekor-`anchor`ed receipt is verifiable in the public transparency log without trusting the issuer.\n\n### Convenience & release commands\n\nThese shorten the real-world loop. **None of them run git, npm, or any deploy** — they print paste-in blocks or read-only analysis. `verify --json`'s 14 keys are unchanged. **Git is the only evidence**; `note`, `release-check`, `policy mode`, and a claim's `modeClaims`/`externalActions` are **advisory / self-report — never PASS/FAIL inputs.**\n\n| Command | What it does | Needs git repo |\n|---|---|---|\n| `begin --kind <recon\\|implementation\\|docs\\|test\\|measure-first\\|observe-only\\|release-check>` | Tag the session's *kind* (stored in `session.json` / receipt sidecar — never in the 14 keys). Prints kind-specific operating rules + end command, and a strong warning if a baseline already exists (recon→implementation transitions must `reset` first). | yes |\n| `close-recon` | Close a read-only recon session in one step. **Only when there are zero changes** (touched/staged/untracked/denied/out-of-scope all 0): save a receipt, build an audit-pack, and `reset`. Refuses (no reset) if anything changed, or if the session is `kind=implementation`. | yes |\n| `prepare-commit [--message <m>] [--include-linked-tests]` | Generate a safe copy-paste commit block — `git add` candidates + message + `Agent-Receipt` trailer — with the **commit block and reset block physically separated** (no `EOF`+`reset` on one line). Never commits. Suppresses the block on denied / true out-of-scope / branch mismatch / NUL. | yes |\n| `finish [--message <m>] [--client]` | Implementation wrap-up in one step: `done` → `commit-check` → `audit-pack` → commit block, with per-stage PASS/FAIL labels and a single \"next command\" on failure. No auto add/commit/reset/push. | yes |\n| `note --type <recon\\|contract-draft\\|no-code-decision\\|next-options> [--message <m>]` | Record a no-code recon/decision as a **note/claim — not git-verified evidence** (`.agent-guard/notes/` or `/decisions/`, pinned to `headHash`). Included in audit-packs *as a user memo*. Tool output — excluded from `verify`. | yes |\n| `release-check --base <ref> [--failed-tests <file>] [--observe <event>]` | Pre-deploy **read-only, advisory** analysis: base/head, ahead/behind, rollbackBase, changed files, commits, a heuristic risk class (labeled — not a score), failed∩changed (heuristic, only if the file is given), and post-deploy events to watch. **Never push/deploy/checkout/reset; does not approve a deploy** — a human decides. | yes |\n| `next` | Recommend the single next command for the current state. | (discovers) |\n| `tap install [--write] [--except <n>...]` · `tap probe / status / show / verify / uninstall` | **MCP observation proxy (alpha).** Wrap stdio MCP servers so every `tools/call` is recorded — value-free (key names · size · digest only), hash-chained, vendor-neutral — as a new observation source in the receipt (`tapSummary`). Not a gateway, not a blocker, **fail-open**. HTTP/SSE is out of v1 scope and **confessed** in `coverage.unwrapped` (never silently skipped). [Compat table + recipes](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/MCP_TAP_COMPAT.md) · [design spec](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/MCP_TAP_SPEC.md). | yes |\n\nContracts may also declare `linked_test_paths` / `expected_linked_tests` (optional) so a guard test outside `allowed_paths` is shown as a *linked guard test (human-confirm)* in `commit-check`/`prepare-commit` — `verify`'s `outOfScope` meaning is unchanged. Policies may set `mode: measure_first | observe_only` to print a self-report checklist in `commit-check` (display only — the tool sees git diffs, not intent).\n\n### Verification engine commands\n\n`research` / `council` / `graph` / `spec` — these check whether an AI's *stated evidence* — a quote, a number, a date, a hash, a signature — matches its source, independent of git. They produce a separate **Verification Receipt** (see [Verification engine](#verification-engine) above). None of them need a contract or a git repo (they take a JSON report as input, though `graph`/`replay --receipt` will use git opportunistically to recheck a commit if one is present).\n\n| Command | What it does | Needs git repo |\n|---|---|---|\n| `research verify --file <report.json|report.md> [--fetch] [--out <p>] [--decompose]` | Check each claim (15 kinds: citation/number/range/date/hash/signature/link/commit/fileChanged/diffContains/schema/version/file/receipt/artifact — [full table](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/EVIDENCE_SPEC.md#check-kinds--statuses)) against its source; `.md` input uses a frozen markdown grammar with verdicts pinned identical to JSON. `--fetch` re-fetches `sourceUrl` live — an independent source, over the network. Any failed check → exit `1`. `--out` seals a Verification Receipt. | no |\n| `council verify --file <decision.json> [--log <path>] [--out <p>]` | Check a *decision*'s supporting claims the same way. Does **not** run a meeting — only verifies decisions already made. `--log` appends the result to a hash-chained, append-only DecisionLog. | no |\n| `spec [--format json]` | Publish the check format: a human summary, or (`--format json`) a machine-readable JSON Schema (draft-07) generated from the same check registry `evaluateClaim` uses. | no |\n| `graph query --dir <d> [--commit\\|--input\\|--model\\|--receipt-id] [--format json]` | Filter accumulated Verification Receipts; neutral pass/fail counts. No relationships shown — see `graph view` for that. | no |\n| `graph view --dir <d> [--out <html>] [--format json]` | The main consumer surface. Default: a self-contained, failure-first **Evidence Browser** HTML — Dashboard → failure tabs (by check/model/subject/commit/reason) → reason + evidence (expected↔actual) → affected claim → 1-click claim history → the receipt itself, last. `--format json`: `{summary, indexes, graph:{nodes,edges}, failures, receipts, subjects, histories}` — `graph.edges` (`asserts`/`checked_by`/`same_input`/`same_commit`/`reverifies`) each carry a machine-readable `basis` and a `verified`/`reported` tier (`verified` only for facts this tool recomputed itself). | no |\n| `graph failures --dir <d> [--by check\\|reason\\|subject\\|model\\|commit] [--check <k>] [--status <s1,s2>] [--sealed] [--since <iso>] [--limit <n>] [--format json]` | Triage: pull just the failures, grouped/filtered. `--limit` always prints \"N of M\" (no silent truncation). Always exits `0` — a query, not a gate. | no |\n| `graph diff (--base-dir <d1> --head-dir <d2> \\| --dir <d> --base-commit <c1> --head-commit <c2>) [--match statement\\|fingerprint] [--sealed] [--format json]` | Compare two receipt sets: new / resolved / status-changed / persisting failures, per-subject deltas, per-input verdict changes. **Exits `1` when there are new failures** — usable as a CI regression gate. \"Resolved\" means *no failure with that key in head* — not proof of a fix. | no |\n| `graph history --dir <d> (--claim <cfp1:…\\|prefix> \\| --input <sha256> \\| --subject <s>) [--format json]` | Timeline for the same claim/input/subject: first appearance, then per-step new/resolved/status/evidence changes. Claim prefixes resolve git-style — unique → used, ambiguous → candidates listed. | no |\n| `graph subjects --dir <d> [--format json]` | A per-subject (project/question) status board — receipt counts, pass/fail, failing checks, date range. Counts only; trend comparison is `graph diff`'s job. | no |\n| `replay --receipt <path> [--fetch]` | Re-verify a saved Verification Receipt: recompute `contentHash`/`receiptId` (tamper detection), re-hash the input file if still present (drift), re-check the commit if one was reported (link rot). **`--fetch`** (opt-in network) re-downloads each sealed `fetched.textSha256` source and reports **SOURCE DRIFT** if the cited page changed since verification. A separate mode of the `replay` command above (`replay --pack` is for Work Receipts' audit-packs). | no |\n\n**CI (GitHub Action, repo-local):**\n\n```yaml\n- uses: koscom2023-beep/agent-receipt@v0.1-verify-check-split\n  with:\n    report: docs/research-claims.md     # or .json\n    base-dir: .agent-guard/vreceipts-main   # optional: regression gate (exit 1 on NEW failures)\n```\n\nSDK: `import { evaluateClaim, buildGraphDiff, buildHistory, buildSubjects, ... } from \"@promptia-labs/agent-receipt\"` — see [docs/SDK.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/SDK.md) for the Stable/Provisional tiers and runnable examples.\n\n### Contract discovery\n\nWhen `--contract` / `-c` is not given, the first existing file wins, in this order:\n\n1. `--contract` / `-c` value (explicit; auto-discovery is skipped entirely)\n2. `.agent-guard/contract.yaml`\n3. `.agent-guard/contract.json`\n4. `agent-guard.yaml`\n5. `agent-guard.json`\n\n### Exit codes\n\n- `0` — pass\n- `1` — violation (`verify` state violation, `check` command failure, `pre` problem)\n- `2` — loading/usage error (missing/unreadable contract, schema error, not a git repo, unknown command/preset)\n\n### Git hooks (`install-hooks`) — gate and evidence are **decoupled**\n\n`agent-receipt install-hooks` writes three hooks into `.git/hooks/` (it never touches `core.hooksPath`, and refuses when husky is present):\n\n- **Gate** — `pre-commit` / `pre-push` run `commit-check` and **block** on a violation. A gate is *meant* to be bypassable: `git commit --no-verify` / `git push --no-verify`.\n- **Evidence** — `post-commit` runs `receipt --committed` and **never blocks** (always exits `0`). Because git does **not** skip `post-commit` on `--no-verify`, an evidence receipt for the just-made commit is recorded *even when the gate was bypassed*. Evidence and gate live in separate hooks on purpose — bypassing the gate no longer discards the receipt.\n\n`uninstall-hooks` removes only the hooks agent-receipt installed (it preserves any pre-existing hook). Hooks aren't tracked by git, so a fresh clone needs `install-hooks` once.\n\n> Wiring it into a worktree sandbox, CI, or a pre-push hook? See [recipes](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/recipes.md).\n\n---\n\n## Baseline mode (`start`)\n\nReal repos are rarely clean — there are often pre-existing untracked files (docs, exports, scratch) unrelated to the current task. Without a baseline, `verify` flags all of them, drowning the real signal.\n\n`agent-receipt start` records the working tree at the start of a task into `.agent-guard/session.json` (a baseline). After that:\n\n- **Ambient noise is removed.** Files that were already unstaged/staged/untracked at `start` are excluded from scope checks — `verify` reports only what changed *since* the baseline.\n- **New violations are still caught.** A new out-of-scope or denied file created after `start` is flagged normally.\n- **`denied_paths` is never hidden by a baseline.** Denied matching runs against the **full** current working tree, not the baseline-relative subset. You cannot bury a denied path by baselining it.\n- **Tool-generated outputs are ignored by `verify`** — `.agent-guard/session.json`, `receipts/`, `keys/`, `audit-packs/`, `ledger.jsonl`, and `dashboard.html`. The rest of `.agent-guard/` (e.g. `contract.yaml`, `policy.yaml`) is treated normally.\n- **Stale baselines are ignored, safely.** If you switch branches, or the recorded `baselineHead` is no longer an ancestor of `HEAD`, the baseline is dropped and `verify` falls back to full-tree checking (noisier, but it never hides changes). Run `agent-receipt reset` then `agent-receipt start` to re-baseline. Use `agent-receipt status` to see the current baseline state.\n\n### `start` refuses when a denied path is already dirty\n\nIf any already-dirty file (unstaged/staged/untracked) matches `denied_paths`, **`start` fails and writes no session.** Baselining a dirty denied path would \"bury\" a dangerous change as if it had always been there.\n\n**This is a safety condition, not something to work around.** Resolve it by one of:\n\n- clean up / `git add` + commit / gitignore the offending untracked files, or\n- narrow the `denied_paths` globs so they don't overlap pre-existing ambient files.\n\nThere is deliberately **no flag to bypass this check** — refusing is the correct behavior.\n\n> Baseline mode compares **path sets, not content hashes.** If a file already existed as untracked at `start`, later content edits to that same untracked path may not be detected — unless it matches `denied_paths`, which is always checked against the full tree.\n\n---\n\n## Contract example\n\nYAML and JSON are parsed by the same schema. The full schema is documented in [`CONTRACT.md`](CONTRACT.md) (source of truth: `src/schema.ts`).\n\n```yaml\nid: example\ntitle: example patch-only guard\nmode: patch_only\nbranch:\n  expected: main\nscope:\n  # If allowed_paths is empty, positive scope-checking is disabled — protect via denied_paths instead.\n  allowed_paths:\n    - \"src/**\"\n  denied_paths:\n    - \".env*\"\n    - \"package.json\"\nforbidden_actions:        # advisory only — NOT mechanically enforced (see CONTRACT.md §7)\n  - push\n  - deploy\nrequired_checks:\n  commands:\n    - name: typecheck\n      command: \"npx tsc --noEmit\"\n      required_exit: 0\ngit:\n  require_no_staged_untracked: false       # default\n  require_only_allowed_files_staged: false # default\n  require_no_denied_path_diff: true        # default (on)\n  require_no_push: false                   # default\n```\n\nThe minimal valid contract is just `id` plus a `scope` key:\n\n```yaml\nid: minimal\nscope: {}\n```\n\n`scope` is **required** (even if empty); only `scope.allowed_paths` / `scope.denied_paths` default to `[]`.\n\n---\n\n## Scaffolding a contract (`init`)\n\n`agent-receipt init --preset <generic|nextjs-supabase>` creates a starter setup so you don't write a contract from scratch (it needs neither a contract nor a git repo):\n\n- **`.agent-guard/contract.yaml`** — a starter contract from the chosen preset (see Presets below).\n- **`.agent-guard/README.md`** — a short agent-facing note describing the rules and how to run `verify` / `check`.\n\nAfter it runs, the new `contract.yaml` is auto-discovered by every other command, so you can run `agent-receipt verify` with no `--contract`.\n\n**Safety: `init` never overwrites.** If either `.agent-guard/contract.yaml` or `.agent-guard/README.md` already exists, `init` fails (exit `1`) and writes nothing — remove the existing file(s) first if you really want to regenerate. An unknown or missing `--preset` is a usage error (exit `2`).\n\nTypical flow:\n\n```bash\nnpx agent-receipt init --preset generic   # scaffold .agent-guard/{contract.yaml,README.md}\n# edit .agent-guard/contract.yaml for your project\nnpx agent-receipt start                    # (optional) record a baseline — see Baseline mode\n# … let the agent work …\nnpx agent-receipt verify                   # state checks (auto-discovers the contract)\nnpx agent-receipt check                    # run required_checks.commands\n```\n\nIn short: **`init` creates the contract; `start` (optional) records a baseline on top of it; `verify` / `check` evaluate against it.**\n\n> **Note — running `verify` before `start`:** the files `init` writes (`.agent-guard/contract.yaml`, `.agent-guard/README.md`) are themselves untracked, and `verify` does **not** exclude them — only **tool-generated outputs** (`session.json`, `receipts/`, `keys/`, `audit-packs/`, `ledger.jsonl`, `dashboard.html`) are excluded. So with a restrictive `allowed_paths`, running `verify` *before* `start` may report them as `outOfScope`. **This is normal.** Avoid it by following the recommended order (`init` → edit → **`start`** → `verify`/`check`, which baselines them away), or by adding `.agent-guard/contract.yaml` / `.agent-guard/README.md` to `allowed_paths` (or committing / gitignoring them).\n\n---\n\n## Presets\n\n- **`generic`** — a starter patch-only contract: empty `allowed_paths` with protective `denied_paths` (`.env*`, key/cert files).\n- **`nextjs-supabase`** — adds denied paths typical for a Next.js + Supabase app (migrations, lockfiles, `vercel.json`) and a `tsc --noEmit` check.\n- **`promptia`** — tuned for the Promptia app (Next.js + Supabase + Vercel). Denies `.env*`, lockfiles, `supabase/migrations/**`, `vercel.json`, `.vercel/**`, `exports/**`, and `docs/arch/json/**`; uses a **broad `allowed_paths`** (`app/`, `src/`, `components/`, `lib/`, …) so everyday source edits pass; `required_checks.commands` is left empty with commented examples (uncomment `pnpm tsc --noEmit` / `pnpm lint` for your project). `lint` and `doctor` recognize this preset and warn if a key denied path is missing.\n- **`strict`** — for risky changes or external-contractor review: narrow `allowed_paths`, strong `denied_paths`, and `require_no_staged_untracked` + `require_only_allowed_files_staged` turned on, plus a `tsc` check.\n- **`relaxed`** — for exploration/prototyping: `denied_paths`-only (empty `allowed_paths`, positive scope off), tolerant of ambient untracked noise.\n\nAll five are starting points — edit the generated `.agent-guard/contract.yaml` for your project. Run `agent-receipt presets` to list them, or `agent-receipt draft-contract` to generate a repo-scanned draft.\n\n---\n\n## What agent-receipt catches\n\nRun by `verify` against the combined set of unstaged + staged + untracked changes:\n\n- Files changed **outside** `allowed_paths` (when `allowed_paths` is non-empty)\n- Changes to **`denied_paths`**\n- Out-of-scope files **staged** (when `require_only_allowed_files_staged`)\n- **Untracked** files present (when `require_no_staged_untracked`)\n- **NUL bytes** in declared paths (corrupted files)\n- Wrong branch (vs `branch.expected`)\n\nRun by `check`:\n\n- `required_checks.commands` whose exit code doesn't match `required_exit`\n\n---\n\n## What agent-receipt does **not** do\n\nRead this before relying on it:\n\n- **Not a real-time blocker.** It runs *after* the agent works, on git state. It does not intercept or block destructive shell commands as they happen.\n- **Not a security scanner or platform.** No vulnerability detection.\n- **No code-quality or security review.** It does not read your code for bugs.\n- **No semantic / AST review.** It checks *which files changed*, not *whether the change is good*.\n- **`forbidden_actions` is advisory.** It is surfaced in `prompt` output but is **not** mechanically enforced by `verify`. Real prevention comes from `denied_paths` + git checks + human review (and, for push, a git pre-push hook).\n- **Push is only reported, not blocked.** `verify` shows ahead/behind vs `origin/main` for information.\n\n---\n\n## JSON output (`verify --json`)\n\nFor CI/automation, `verify --json` prints a single stable JSON line to stdout and suppresses the human note. The key set is fixed:\n\n```json\n{\"ok\":true,\"contractId\":\"example\",\"title\":null,\"branch\":{\"current\":\"main\",\"expected\":null,\"ok\":true},\"touched\":[],\"staged\":[],\"untracked\":[],\"outOfScope\":[],\"deniedHits\":[],\"stagedOutOfScope\":[],\"nulBad\":[],\"violations\":[],\"headHash\":\"...\",\"aheadBehind\":null}\n```\n\n- Optional values (`title`, `branch.expected`, `aheadBehind`) keep their key with a `null` value.\n- On a `2` error there is no JSON on stdout (message goes to stderr).\n- Depend on **`ok` and the exit code**, not on incidental field shapes.\n\n---\n\n## Completion claims (`claims`)\n\nAn agent's \"I changed only X, tests pass\" is a *claim*. `agent-receipt claims --file <claim.json>` checks that claim against the **actual git state** — it never trusts the claim itself. The most useful catch is a change the agent *didn't* mention.\n\nThe claim file is plain JSON; every field is optional and only provided fields are compared:\n\n```json\n{\n  \"changedFiles\": [\"src/auth.ts\"],\n  \"newFiles\": [],\n  \"deniedHits\": [],\n  \"tests\": true,\n  \"summary\": \"fixed the token refresh\"\n}\n```\n\n- `changedFiles` / `newFiles` / `deniedHits` are compared (as sets) to git's actual touched / untracked / denied paths.\n- `tests` (boolean) is compared to running `check` (the contract's `required_checks.commands`).\n- `summary` is informational only (echoed, not verified).\n- Exit `0` = claim matches git · `1` = mismatch · `2` = file missing / not valid JSON.\n\n`agent-receipt prompt` already tells the agent to emit exactly this JSON, so the loop is: brief with `prompt` → agent works → agent pastes the claim → `claims --file` reconciles it with git.\n\n## Capture & share-proof (alpha)\n\nTwo newer commands extend receipts **beyond the git working tree**.\n\n**`capture` — what the agent did that git can't see.** Wire it into Claude Code's `PreToolUse`/`PostToolUse` hooks and it records, append-only, the agent's *actions* — reading a `.env`, calling an external host, creating-then-deleting a file — none of which leave a git trace. **Values are never stored** (paths / hosts / classification only, redacted). It never blocks (evidence, not a gate).\n\n```bash\nagent-receipt capture install            # preview the hooks snippet (no file change)\nagent-receipt capture install --write    # merge hooks into ./.claude/settings.json (idempotent, preserves existing)\nagent-receipt capture show               # git saw: N  ⟷  actions recorded: M  (+ git-changed paths with no capture record)\nagent-receipt capture verify             # hash-chain integrity check (tamper / deletion / reorder / gap)\n```\n\nWhen a capture log exists, `done` / `receipt` embed an `actions` / `actionsSummary` block in the receipt — **additive**: the 14-key `verify --json` and the existing `contentHash` are unchanged, and receipts produced without capture are byte-identical. `agent-receipt begin` clears the log for a fresh audit boundary.\n\n**Completeness — what it can and can't promise.** The capture log is a hash-chain (each record carries `seq` + `prevHash` + `entryHash`), so `capture verify` detects tampering, deletion, reorder, and internal gaps; a failed ingest writes an explicit `capture-degraded` marker instead of silently dropping. `share-proof` / `capture show` also surface **git-changed paths that have no capture record** (the hook blind spot) and the captured tool surface. It is **honest about its ceiling**: proving *every* action was captured is impossible for a single local observer, so the claim is **tamper-evident & gap-evident within the configured hook surface — not \"complete.\"** Out of scope (known blind spots): tail-truncation, `--dangerously-skip-permissions` (hooks fully off), sub-agent / MCP / pipe / OS-level actions, concurrent-hook races.\n\n**`share-proof` — a one-page evidence file for your client.** Renders a receipt as a self-contained HTML page (no network, no external resources) you can send to a client: scope result, change magnitude, beyond-git actions, and the integrity hash.\n\n```bash\nagent-receipt share-proof                 # render the latest saved receipt\nagent-receipt share-proof --receipt <p>   # render a specific saved receipt\n```\n\n**`anchor` — a third-party seal (Rekor transparency log).** A local receipt is *your* statement about *your* work — useful, but self-issued. `anchor --upload` wraps the receipt in a DSSE-signed in-toto Statement and registers its hash to the public **Rekor** transparency log, so a client can confirm **the receipt existed at that time without trusting you**. One command, no external tools (Node `fetch` + built-in crypto); it auto-generates an ed25519 key on first use.\n\n```bash\nagent-receipt anchor                       # offline: build the DSSE bundle + print how to register\nagent-receipt anchor --upload              # one command: sign + register to Rekor + write the sidecar\n```\n\nOn success it writes a `<receipt>.rekor.json` sidecar next to the receipt (entry UUID, logIndex, verification URL). **`share-proof` then auto-embeds a \"Verify in the public transparency log\" link** — a receipt with no sidecar renders byte-identically to before. The link is *click-only* (an `href`, never an auto-loaded resource), so opening the proof still leaks nothing.\n\n> Honest scope: **git-based evidence, tamper-evident — not non-forgeable, and not a compliance guarantee.** Capture ingests Claude Code hooks natively; **Codex / GitHub Copilot / Cursor** hooks are normalized into the same record shape via a vendor-neutral envelope normalizer (**best-effort** — verify your agent's payload with `capture` `--print`/dry-run; agent-specific tools like Codex `apply_patch` and Cursor's dedicated events are not yet mapped). A receipt may optionally be anchored to the public Rekor log (`anchor`, above) — that seals **time & existence** via a third party, but is **not** a keyless (identity) proof. Cloud / hosted SaaS verification pages remain out of scope.\n\n---\n\n## Local-first / privacy\n\n- Runs entirely locally; no code or diff ever leaves your machine.\n- No API key, no account, no telemetry. The **core** verify/receipt flow makes **no network requests** — the only network is *opt-in*: `anchor --upload` (sends a *hash* to the public Rekor log, never your code) and `doctor`'s npm-version check (disable with `AGENT_RECEIPT_NO_NET=1`).\n- Uses your installed `git` to read the working tree.\n\n---\n\n## Package status\n\nCurrent version **`0.24.0`** (`@promptia-labs/agent-receipt`). **`0.24.0`**: **seal integrity fix (breaking)** (2026-07-10, from an external code review). The receipt seal (`contentHash`) now covers the human-readable verdict (`ok`, `violations`, `branch`, `contractId`, plus `verdict`/`contractSnapshot` and an `actions`/`reconciliation` digest when present), so a forged PASS can no longer survive `verify-proof`. `done` re-seals after attaching the verdict so the stored hash and the recompute agree. **This changes the hash format: receipts made before 0.24 show as mismatched and must be re-issued.** The schema marker bumps `1.0` to `1.1`, and `verify-proof` reads it to say \"pre-0.24 format, re-issue\" instead of \"tampered\" (it still fails, so the old weak seal is never honored). Also in this release: the decision-log hash-chain uses RFC 8785 JCS canonicalization (a replacer-array bug had dropped the nested grounding from the hash); a stored-XSS in the dashboard label is escaped; JSON masking now catches `KEY=value`, `key: value`, and PEM blocks inside string values; deny globs match case-insensitively on case-insensitive filesystems (one `pathmatch` SSOT) and every profile's `.env*` becomes `**/.env*`; `gate` allows only `pass`/`abstain`; `git` reads get a `maxBuffer` so a huge diff is not silently read as \"0 changes\"; `hashStatus` accepts only collision-resistant algorithms and `fileChanged` matches by exact line; and the offline `verify-proof` headline no longer claims \"unchanged since creation\" for a self-managed key (only a third-party Rekor anchor earns the stronger line, and even then it defers the real check to the human link). **`0.23.0`** — **terminal verdict card** (2026-07-08, a CLI/TUI council): the first-three-seconds verdict hero from the HTML proof now renders **in the terminal** too. `done` prints a boxed verdict card **when stdout is a TTY** — the verdict as a triple signal (color + icon + text: `✅ PASS` green, `❌ FAIL` red, `◌ INCOMPLETE` grey), plus the contract, magnitude, checks, and seal, with a \"run `explain` for the rest\" pointer where the HTML folds. **Piped/CI/non-TTY output is byte-for-byte unchanged** (the card is TTY-gated, so every existing test and script sees the same text as before), and **color is emitted only when `stdout.isTTY && !NO_COLOR`** (or `FORCE_COLOR=1`) so nothing leaks escape codes into logs. `agent-receipt share --term` reprints the card for a saved receipt without writing HTML. A `src/termcard.ts` pure renderer does the drawing with **East-Asian-width-aware padding** (CJK and emoji count as two columns, so the box borders align with Korean text) and clips overlong lines with `…`; the verdict icon and label come from the same `verdictVisual` SSOT the HTML uses, so the meaning stays in one place. No new dependency, honest labels intact (FAIL is shown red and large, never softened). **`0.22.0`** — **UX pass: onboarding, one face, first three seconds** (2026-07-08, a UI/UX council — all surfacing/reorganizing, zero new features, identity untouched): the tool has many commands, so this release makes the common path obvious without hiding the power. **(Onboarding)** the no-args first run now **welcomes** a new user (contract-less) with a one-line mental model and points at `quickstart`, instead of a bare \"no contract\" line; `quickstart` names the **three core verbs** `begin → done → share` up top and **demotes `capture` to optional/later** (it no longer auto-runs on `--write` — the shared-settings hook shouldn't scare a first session). **(One mental model)** a single sentence now leads `help` and the welcome: *this tool leaves two things — what the AI did (Work Receipt) and what the AI said (Verification Receipt)* — dissolving the \"why are there two receipts\" confusion. **(One face)** the four HTML outputs (share-proof · inbox · dashboard · Evidence Browser) now share **one style SSOT** (`src/htmlstyle.ts`) — a warm-paper palette, one type set, and a verdict-hierarchy color that matches the landing site's thermal-receipt world; the Evidence Browser's mature token set was absorbed as the shared superset. **(First three seconds)** share-proof opens with a **verdict hero** (icon + color + label, scroll-zero) carrying the contract sentence and change magnitude, for the recipient who opens the page without a CLI. **(Accessibility)** every verdict is a **triple signal — color + icon + text** (a single `verdictVisual` source; never color alone), on a contrast-checked palette, HTML still self-contained (no external resources). **(Honesty, folded not removed)** the \"tamper-evident / not a compliance guarantee\" caveats move into a **one-click `<details>`** so a green result reads big while the full scope stays a click away — honesty by placement, not by shouting. **(i18n skeleton)** a core-path bilingual layer (`--lang en` / `AGENT_RECEIPT_LANG=en`, default `ko` = byte-identical for existing users) so the onboarding path speaks English for global npm users; full translation is a later train. **`0.21.0`** — **MCP tap (observation proxy, alpha)** (2026-07-08, three design councils + code-vs-spec reconciliation): a new **observation source** — `mcp-tap` sits between the agent and its stdio MCP servers and records every `tools/call` **value-free** (top-level key names · byte size · a canonical digest — never the argument values, never the `env` block), hash-chained like `capture`, vendor-neutral. It surfaces in the receipt as `tapSummary` (metadata, **excluded from `contentHash`** — receipts without tap stay byte-identical). Design honesty is enforced in code: the JCS (RFC 8785) canonicalizer earns the name `jcs/sha256` **only if the frozen official test vectors all pass** (a test demotes it to `sorted/1` otherwise); reads coalesce losslessly (`repeat:N`, closed by input-events only — never a timer — so it stays deterministic) while writes/exec/network/deploy are **never merged**; a crash is confessed by a missing `cleanShutdown` marker; the session boundary is a **cursor snapshot** (a long-lived proxy can't truncate its own log without breaking the chain); URIs are split by scheme (file=path / else scheme+host, userinfo stripped) with a `uriDigest`; HTTP/SSE servers are out of v1 scope and **confessed in `coverage.unwrapped`** rather than silently skipped. `tap install / probe / status / show / verify / uninstall` manage the wiring (preview by default; restore truth = a self `sidecar`, not a key in someone else's config). Verified on 5 real servers (filesystem · memory · everything · sqlite · git — [compat table](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/MCP_TAP_COMPAT.md)); a CI-witness workflow re-runs the release commit under a separate identity (a witness, **not** a key-trust proof). db-write classification proven on a live sqlite server (lead-token parse). Guard integration is **warn-only** (no tap-path deny), overhead micro-bench is **not yet measured**, and English CLI output is a later train — all stated, none faked. Full design: [MCP_TAP_SPEC.md](https://github.com/koscom2023-beep/agent-receipt/blob/v0.1-verify-check-split/docs/MCP_TAP_SPEC.md). **`0.20.2`** — **integrity patch** (2026-07-07, from a full self-audit): a `review reject` / `needs-review` sidecar is **no longer counted as an approval** — `hasApproval` was existence-only, so a rejected receipt read as approved in four consumers (`attest` in-toto approval count · `ledger` · `commit-check` · `incident`); status reading is now a single SSOT (`approvalStatusFor`: legacy sidecars without `status` still count as `approved`, a broken sidecar counts as nothing), with a 4-case regression test (rejected / needs-review / legacy / corrupt). Also: the site-parity and replay-equivalence tests joined `npm test` (they were manually-run only), and the historical feature-snapshot doc now carries a \"not current\" banner. No new features. **`0.20.1`** — **docs & polish patch** (2026-07-07): republishes with the review-ready README/site copy that landed after `0.20.0` shipped, the em-dash-free site copy, a `gen-claim` usage line covering all three modes (`--transcript | --llm-prompt | --from-llm`), and the GitHub Action default `version` pin corrected to the published `0.20.0` (was a stale `0.14.0` — pin = consumer reproducibility, kept at a version guaranteed to exist). No engine change. **`0.20.0`** — **review-ready receipts** (2026-07-07 — three council batches in one version; versions bump once per publish): the release closes the loop the market names as the bottleneck — *where did it come from · what was it meant to do · who is responsible*. **(Ten-second proof)** share-proof opens with an **executive block above the tabs**: the verdict, the contract restated as **plain sentences (KO+EN, fixed slots, zero LLM)**, magnitude straight from receipt fields (a test forbids summary-vs-receipt drift), guard-denied count, and the verdict's `[rule-id]` facts regrouped into **four review buckets in the reviewer's real reading order — Scope / Critical paths (as designated by the contract) / Validation / Agent behavior** ","readmeFilename":"README.md"}