Packages
Evidence
Proof humans can read.
The registry still publishes raw JSON for agents. The website now explains each proof first, then exposes the machine file as an explicit verification link.
Witnesses
Root hash
Quarantine
Yanked
Package
developer-default-policy
Apply a practical default policy for developers trying agent packages safely before production use.
- Canonical
- pkg:did:key:z6MksFrmCtYGTqJzUMsi3i8aABgH7m97zf4mhfmhvfmF5pAe/developer-default-policy@0.1.0
- Digest
- 16181af9a6d12b749dd16189c019fa75c91b27e7402c7cf489e81b3fa2cfc56b
- Publisher
- did:key:z6MksFrmCtYGTqJzUMsi3i8aABgH7m97zf4mhfmhvfmF5pAe
- Source
- 5e4ed66e3a8eb635e66a02df960f22bc27664700
- Trust
- verified/100
Artifacts
What each proof means
Discovery
The manifest agents use to find the registry, installer, advisory feed, transparency log and witness.
Machine fileRegistry
The package index carrying signed package evidence, digests, source commits, compatibility receipts and warnings.
Machine fileCheckpoint
The current transparency tree head. It pins root hash, tree size, timestamp and log identity.
Machine fileAdvisories
The signed safety feed used to warn or block risky package versions without deleting Gitlawb content.
Machine fileSecurity policy
The public reporting route for vulnerabilities, package incidents and registry trust failures.
Machine fileProof transcript
A machine readable record of the demo path: inspect, install, audit and blocked unsafe manifests.
Machine fileReview packet
The machine readable audit handoff with targets, commands, claim boundaries and sign off fields.
Machine fileEvidence manifest
The index of public review artifacts, live health endpoints and proof files reviewers can reproduce.
Machine fileEvidence ledger
The adoption and review receipt ledger. It stays at zero until external redacted evidence exists.
Machine fileSynthetic monitor
The reproducible monitor command for site, registry, advisories, witness, node and Gitlawb receive pack probes.
Machine filePackage proof
Merkle proof for developer-default-policy, bound to leaf 03738a8bb3886d76c33a5fa1860f43bffc504e2342e52ebed3ad954b6a133644.
Machine filePackage witness
Witness statement for developer-default-policy, signed outside the registry log identity.
Machine fileRoots
Current pinned values
- Log
- did:key:z6MkugeJcjgGhG1EpUMhhJ1Q5SoYn65T4cmiuBFE8E82TMyk
- Witness
- z6Mkv8WH...EkewWJ
- Checkpoint
- 3cc66da3292900a4ac482b2c301db5c6e0a00c2461847a29fec5275da7f631cf
- Tree size
- 32
- Generated
- 2026-05-16T21:44:02.000Z
- Registry
- https://nipmod.com/registry/packages.json
- Advisories
- https://nipmod.com/advisories.json