Skip to main content

Continuity Receipt

An open specification, test vectors, and reference verifier for verifiable records of governed AI-agent tasks.

Spec version: continuity-receipt/0.3 — published 2026-09-23 (0.1 and 0.2 remain supported; open items listed in SPEC.md §11). License: Apache-2.0 (specification text, code, and vectors).

Version matrix — the spec and the two implementations version independently:

Artifact Current Installs with
Spec / wire format continuity-receipt/0.3 (additive)
Python reference + CLIs 0.3.1 (PyPI) pip install continuity-receipt
Rust verifier + CLIs 0.3.2 (crates.io) cargo install continuity-receipt

Both implementations support spec 0.3 (offer/accept binding) with identical verdicts and codes over the full vector set. Verify the version you have with continuity-receipt-verify --help (Python or Rust).

A Continuity Receipt is a signed, hash-chained record of one governed task: decision → authority → execution → delivery → termination → settlement. It is designed to be verified offline by any third party — insurers, arbiters, procurement, courts, other agents — without requiring trust in the issuer.

The spec is intentionally small: JSON (RFC 8785 canonicalization), SHA-256, Ed25519, did:key identities. No new cryptography. Redaction uses salted commitments so fields can be revealed selectively without breaking integrity; erasure makes commitments opaque while the chain still verifies.

Why this exists

Agents are accumulating persistent memory and doing delegated work at scale, but accountability is still self-reported. This document is the opposite: claims arrive with evidence, missing evidence is distinguished from false evidence, and "proof it stopped" (task.termination) is required for a task to verify as complete.

Verification verdicts (IETF CTQ-aligned): TRUSTED · PROVISIONAL · INSUFFICIENT_EVIDENCE · UNTRUSTED. INSUFFICIENT_EVIDENCE is explicitly not the same as false.

Layout

SPEC.md                    the v0.3 specification (normative; 0.1 + 0.2 supported)
schema/                    JSON Schema (2020-12) for 0.1 + 0.2 + 0.3 bundles
THREAT_MODEL.md            what receipts prove, and what they do not
ANCHORING.md               anchoring policy: OpenTimestamps default, chain optional
OPEN_DATA_ANSWER_RECEIPT.md  worked example: an AI answer over an open-data portal
CONTRIBUTING.md            DCO, test rules, scope
ROADMAP.md                 what lands in 0.3 and beyond, and the selection rule
continuity_receipt/        reference implementation (Python, cryptography>=42)
rust/                      second implementation (verifier crate; cargo test)
vectors/                   24 test vectors + INDEX.md + manifest.json
tools/make_vectors.py      regenerates the vectors deterministically
tests/                     conformance suite (vectors, schema, primitives)

Quickstart

# from PyPI (0.3.1) — clone the repo for the vectors
python3 -m venv .venv && . .venv/bin/activate
pip install continuity-receipt
continuity-receipt-verify vectors/02_happy_full.json   # TRUSTED
continuity-receipt-verify vectors/10b_anchor_missing.json --require-anchor
continuity-receipt-disclose --help

# or run from a checkout
pip install 'cryptography>=42'
python3 -m continuity_receipt.verify vectors/02_happy_full.json

# run the conformance suite (vectors + schema + primitives)
python3 -m unittest discover -s tests -v

Test vectors

24 vectors with machine-readable expectations in vectors/manifest.json (human index: vectors/INDEX.md): 0.1 conformance (0110c), 0.2 additions — succession records, millisecond timestamps, counterparty attestations, revocation semantics, Merkle provenance, anchor typing — and 0.3 additions: offer → accept binding (1616d), including the missing-offer, terms-mismatch, and expiry cases. Every schema-valid vector is also checked against schema/continuity-receipt-0.3.schema.json in CI.

Status and provenance

  • Origin: developed in the MandalaOS gate-lite work, where it passed acceptance G1–G8 and the wider project suite (49 tests, dogfood evidence). This repository is the format's public home; it versions independently of any product release train.
  • Releases: 0.1 (2026-09-18) — spec, reference verifier, 11 vectors. 0.2 (2026-09-18) — authority.succession, bundle-level revocation statements, counterparty attestation rules, millisecond timestamps, merkle-sha256: provenance, anchor typing, JSON Schema, CI, machine-readable vector manifest. 0.3 (2026-09-23) — agreement.offer / agreement.accept with digest binding, terms/id equality, and expiry semantics; vectors 16–16d; schema 0.3.
  • Second implementation: rust/ — an independent Rust verifier (crate continuity-receipt) with the same verdict/error semantics; cargo test checks all 24 vectors and CI diffs it against the Python reference. The 0.3 record types are not ported yet; the Rust verifier fails closed on 0.3 envelopes and that behavior is pinned by a test until parity lands.
  • Origin implementation: WhiteMagic — an MIT, local-first memory substrate for agents (this spec repo is Apache-2.0; the two are separate works).
  • Standards context: the format is intended as a contribution to the emerging neutral layer (W3C AI Agent Memory Interoperability CG; IETF agentproto work). It is not endorsed by those bodies, and no claim of adoption is made.

Development disclosure

This project is developed with AI agents as drafting, implementation, and review collaborators, under the direction and accountability of the human maintainer. Every artifact published here — spec text, code, vectors — is reviewed and signed off by the human maintainer, who is responsible for its claims. We disclose this proactively because verifiability is the project's subject as well as its method.

The stack

Local memory → governed execution → verifiable continuity

Each repository stands on its own: WhiteMagic does not require MandalaOS, and Continuity Receipt does not require WhiteMagic. Three entrances — use itwhitemagic; review a protocolcontinuity-receipt; attack the security architecturemandalaos-gate-lite.

Contributing

Open an issue for spec questions, mapping suggestions, or implementation feedback. Interoperability discussion belongs in the open standards venues; this repository tracks concrete text and vectors.

License

Apache License 2.0 — see LICENSE. The specification is published for royalty-free implementation. Test keys in the vectors are deterministic and public; never use them for real receipts.

Release files for continuity-receipt 0.3.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for continuity-receipt 0.3.1
File Size Uploaded
continuity_receipt-0.3.1.tar.gz 97.1 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for continuity-receipt 0.3.1
File Interpreter ABI Platform
continuity_receipt-0.3.1-py3-none-any.whl Python 3 none any Details

Total release size: 127.5 kB

Release files / continuity_receipt-0.3.1.tar.gz

Download URL continuity_receipt-0.3.1.tar.gz
Size 97.1 kB
Tags Source
SHA-256 checksum
How to use checksums
3b66d8d226576aa9d3868e53ef24fed5a82a487fbdfcd7b88ec7d20611db17fc
BLAKE2b-256 checksum
How to use checksums
ab0a3bbb2512e5f4c31d3cfc2730e7097517f733d5039ccbb4e57edcc7792482
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.12.3

Release files / continuity_receipt-0.3.1-py3-none-any.whl

Download URL continuity_receipt-0.3.1-py3-none-any.whl
Size 30.5 kB
Tags Python 3
SHA-256 checksum
How to use checksums
0137fee29914fadefe2e591305ce0a7a2ca37ac7dc254613621206facf053e6c
BLAKE2b-256 checksum
How to use checksums
21a7cc69545b3dfaacca01f121b8c0f201e36857290a35526acc33dea05a47bb
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/7.0.0 CPython/3.12.3

Release history Release notifications | RSS feed

0.4.0

2 release files

0.3.3

2 release files

0.3.2

2 release files

This release

0.3.1 This release

2 release files

0.3.0

2 release files

0.2.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page