AURORA Agent Evidence SDK
aurora-agent is a local-first Python SDK for instrumenting declared
consequential machine actions and transmitting compositional execution evidence
to AURORA.
pip install aurora-agent
It provides seven compatible surfaces:
- Local action evidence ??proposal, authorization/policy, precommit, execution, outcome, deterministic bundle export, and offline verification.
- AURORA ingestion ??incremental runtime events, a durable SQLite outbox, idempotent transport, and finalization into an immutable AURORA Compositional Evidence graph.
- AI Output evidence ??first-class AuroraSeal v3 records with digest-only, redacted, or full-payload capture, sealing, verification, bundle export, and signed links to sealed AI decision records.
- AI Decision evidence ??first-class decision records that preserve operator-declared score interpretation, policy context, evidence gaps, uncertainty, sealing, public metadata verification, and offline bundles.
- Human Approval evidence ??policy-bound approval requirements, immutable review events, reviewer eligibility, deterministic single- and multi-party process projections, and human-bound approval operations.
- Amendment lifecycle evidence ??immutable corrections, amendments, supersessions, reversals, and withdrawals with full-successor preparation, current-head coordination, lifecycle projection, and verification bundles.
- Data Lifecycle evidence — retention, redaction, disclosure, tombstone, content-artifact, operation-intent, projection, and independently verifiable lifecycle-bundle surfaces.
Core properties
- deterministic JSON canonicalization and SHA-256 commitments;
- raw-payload minimization with
DIGEST_ONLYas the default; - explicit
REDACTEDandFULL_PAYLOADmodes; - API keys held only in memory and never written to the outbox;
- ordered, crash-recoverable delivery with stable idempotency keys;
- generic Python capture surface;
- framework-light Claude Agent SDK adapter;
- direct observer integration with the JAKROW D3
execute_operationpath; - final AURORA graph linked to an existing sealed AURORA record.
Self-serve quickstart
After creating a Sandbox API key at
https://auroraseal.com/app/quickstart:
pip install aurora-agent
export AURORA_API_KEY="<shown-once-key>"
aurora-agent quickstart
The command creates a controlled sample record, commits evidence locally before a local SQLite ledger operation, finalizes the graph, verifies it server-side, and prints the authenticated Viewer URL.
It does not perform an external payment, message, purchase, or customer
operation. The default capture mode is DIGEST_ONLY; the API key is not
persisted in the outbox.
Recovery commands:
aurora-agent outbox status --outbox PATH
aurora-agent outbox flush --outbox PATH
Package identity
| distribution | aurora-agent |
| import | aurora_agent |
| version | 0.9.0 |
| Python | >=3.11,<3.14 |
Documentation
AMENDMENT_QUICKSTART.mdHUMAN_APPROVAL_QUICKSTART.mdAI_DECISION_QUICKSTART.mdAI_OUTPUT_QUICKSTART.mdSELF_SERVE_QUICKSTART.mdQUICKSTART.mdINGESTION_QUICKSTART.mdAPI_REFERENCE.mdTHREAT_MODEL.mdNON_CLAIMS.txt- RELEASE_NOTES_0.9.0.md
- RELEASE_NOTES_0.8.0.md
RELEASE_NOTES_0.7.0.mdRELEASE_NOTES_0.6.0.mdRELEASE_NOTES_0.5.0.mdRELEASE_NOTES_0.4.0.mdRELEASE_NOTES_0.3.1.mdRELEASE_NOTES_0.3.0.md
Independent verification challenges
AURORA publishes two OpenSSL-only RFC 3161 verification exercises. They require no AURORA SDK, API key, backend access, or custom verifier.
- CH-01 ??Independently verify the timestamp token
- CH-02 ??Change one bit and reproduce verification failure
These challenges demonstrate cryptographic binding and tamper detection for the supplied bytes.
They do not establish capture completeness, legal authority, decision correctness, external-provider acknowledgement, or external-world truth.
What this SDK does not claim
The SDK does not claim:
- capture completeness;
- absence of bypass paths;
- causal or external-world truth;
- external-provider acknowledgement;
- qualified timestamp status;
- legal authority or legal compliance;
- decision correctness, fairness, or policy validity.
DIGEST_ONLY protects raw values from the local outbox and AURORA payload
storage, but AURORA can verify only the supplied client commitment unless the
raw value is transmitted separately.
License
The aurora-agent SDK source and its generated Python distributions are
licensed under the Apache License, Version 2.0. See LICENSE and
NOTICE.
AURORA hosted services, the AURORA backend and frontend, and JAKROW components
outside this SDK are proprietary and are not included in that grant. See
LICENSE_HISTORY.md for the licensing history of releases
before 0.3.0.
AURORA and JAKROW are marks of Krow Industries.
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file aurora_agent-0.9.0.tar.gz.
File metadata
- Download URL: aurora_agent-0.9.0.tar.gz
- Upload date:
- Size: 101.7 kB
- Tags: Source
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
23d38748d55dacf27045aeb416fd42c87244d1f23f73a56f7ad2b58dc785ef50
|
|
| MD5 |
afc81c674352ae42f45360a73ddaafbc
|
|
| BLAKE2b-256 |
57f4c03da21d79e765b270ffa0ac0ea8c123b5ca3455af263b0beefb921b32cb
|
Provenance
The following attestation bundles were made for aurora_agent-0.9.0.tar.gz:
Publisher:
aurora-agent-publish.yml on Jakman1225/aurora-agent
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aurora_agent-0.9.0.tar.gz -
Subject digest:
23d38748d55dacf27045aeb416fd42c87244d1f23f73a56f7ad2b58dc785ef50 - Sigstore transparency entry: 2492825228
- Sigstore integration time:
-
Permalink:
Jakman1225/aurora-agent@ec4674eab6b7f1b10f320b2b965047446bad9433 -
Branch / Tag:
refs/tags/v0.9.0 - Owner: https://github.com/Jakman1225
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
aurora-agent-publish.yml@ec4674eab6b7f1b10f320b2b965047446bad9433 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file aurora_agent-0.9.0-py3-none-any.whl.
File metadata
- Download URL: aurora_agent-0.9.0-py3-none-any.whl
- Upload date:
- Size: 66.8 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? Yes
- Uploaded via: twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
c3de114df2cb20d45f0a2604d30dc449d85fc3ba6e74e1d76328e5e66d3568bb
|
|
| MD5 |
c1570b6dda057ca01af7b42ff9551d28
|
|
| BLAKE2b-256 |
6bd8d7ca264a9492b841d2d8393eb151ed347a755285629bc57e673cddde8f7c
|
Provenance
The following attestation bundles were made for aurora_agent-0.9.0-py3-none-any.whl:
Publisher:
aurora-agent-publish.yml on Jakman1225/aurora-agent
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
aurora_agent-0.9.0-py3-none-any.whl -
Subject digest:
c3de114df2cb20d45f0a2604d30dc449d85fc3ba6e74e1d76328e5e66d3568bb - Sigstore transparency entry: 2492825286
- Sigstore integration time:
-
Permalink:
Jakman1225/aurora-agent@ec4674eab6b7f1b10f320b2b965047446bad9433 -
Branch / Tag:
refs/tags/v0.9.0 - Owner: https://github.com/Jakman1225
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
aurora-agent-publish.yml@ec4674eab6b7f1b10f320b2b965047446bad9433 -
Trigger Event:
workflow_dispatch
-
Statement type: