Receipts sealed
Proof is a first-class resource
Sample receipts binding grant, execution, evidence, and outcome.
Architecture
The platform holds no UI opinions. Surfaces — the agent, the console, your own tools — attach to the same contract. Simulated metrics
Receipts sealed
Sample receipts binding grant, execution, evidence, and outcome.
Verification at the edge
Authority is checked at the point of execution — beside the repo, the payment rail, the deploy target — not in a dashboard after the fact.
Target adapters
Adapters teach existing tools to check grants and honor refusals — the platform supplies the contract, not another dashboard.
pixels of required UI — every capability is an endpoint first
Autonomy from evidence
An agent's authority envelope is derived from its receipt history — reviewable, reversible, never vibes.
Principles
Four rules the platform holds so surfaces don't have to.
Grants are purpose-bound, limited, single-use, and expiring. Standing permission is not a concept the API can express.
Verification happens at the point of action. A missing, expired, or replayed grant ends in refusal — recorded as evidence.
Every execution seals a receipt binding authority to outcome, verified against the world the action changed.
Scope widens from verified work and narrows after uncertainty. The envelope is recomputed from receipts, never assumed.