decidio (Python)
The one-line approval gate for AI-agent actions — the agent suspends for human approval and resumes, sealing a portable Authority Receipt the customer owns. Decidio gates (proceed | route | block) + records; the agent executes its own action on resume. Decidio never executes and holds no downstream credentials. Python-first, with a TS twin (@decidio/sdk) that emits an identical request + receipt (conformance-asserted).
from decidio import guard
# one line — same surface in every runtime
create_opp = guard.protect(
create_opp_raw,
lambda o: {"action": "createOpportunity", "amount": o["Amount"], "scope": "Opportunity"},
)
- proceed → runs immediately (auto-approved under a named, versioned policy rule), sealed.
- route → suspends (
DecidioSuspended): parks the call args in an agent-side store, the process may exit; resumes when a human approves and re-runs your function. - block → raises
DecidioBlocked; your function never runs.
Setup
pip install 'decidio[signing]'
export DECIDIO_API_URL=https://decidio-api.onrender.com # the hosted sandbox
python -m decidio init my-agent # sign in, register the agent, mint its API token, write .env
Every later command reads .env from the same directory. First run tip: pass
mode="blocking" to guard.protect(...) to watch the whole loop live (trigger → route to a
human → approve with python -m decidio approvals approve <id> → your function executes).
A brand-new agent matches no auto-approve rule, so every request routes to a human —
deny-by-default is the product working, not a misconfiguration.
Other commands: doctor (config + connectivity + token scope), receipt <id> (download the
sealed Authority Receipt). The core is stdlib-only; adapters and the verifier are extras.
Durable resume (real approvals take minutes to days)
Without mode="blocking", a routed action suspends: it parks its call args locally and raises
DecidioSuspended; the process may exit. Self-serve transport — start here:
guard.worker() — a durable poll worker that re-executes parked actions on approval, exactly
once. No inbound URL, no shared secrets; this is the transport for the hosted sandbox.
Operator deployments can use the signed webhook instead — Decidio POSTs a verdict to your resume URL and the handler verifies the HMAC fail-closed:
# FastAPI
@app.post("/decidio/resume")
async def decidio_resume(req: Request):
return guard.resume.handle(await req.body(), req.headers.get("x-decidio-signature"))
Honest requirement: webhook signing uses a shared secret configured on BOTH sides — your
DECIDIO_WEBHOOK_SECRET must equal the Decidio server's, and self-hosted production also
allow-lists resume hosts. Against the hosted sandbox, use the worker. Either way, re-execution
is single-use (no double-write).
Engine adapters (durable suspend on the engine you already run)
Thin translators onto each engine's native durable wait — pip install decidio[langgraph|temporal|openai]:
# LangGraph — true drop-in (interrupt() is contextvar-based)
create_opp = guard.protect(create_opp_raw, describe, adapter="langgraph")
# Inngest / Temporal / OpenAI Agents — pass the engine handle:
await decidio.adapters.inngest.gate(step, guard, ctx, run=lambda: create_opp_raw(o))
await decidio.adapters.temporal.gate(wf, guard, ctx, run=..., )
resolved, pending = decidio.adapters.openai.gate_interruptions(guard, run_state, describe)
Own the record — verify it yourself
Every outcome is a sealed W3C-VC (Ed25519 did:key), tamper-evident and offline-verifiable with no Decidio dependency:
pip install decidio[verify]
python -m decidio.verify receipt.json
Invariants
Decidio never executes downstream / holds no downstream credentials (the only downstream touch is the opt-in, read-only read-back tier) · holds none of the parked payload · fail-closed signatures · single-use idempotent resume · deny-by-default policy · request-bound identity proof. The agent executes; Decidio gates, records, and signals.
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
Built Distribution
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file decidio-0.1.1.tar.gz.
File metadata
- Download URL: decidio-0.1.1.tar.gz
- Upload date:
- Size: 43.8 kB
- Tags: Source
- Uploaded using Trusted Publishing? No
- Uploaded via:
twine/7.0.0 CPython/3.12.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
74a08538d9e1e34849c4f2a97bd8132c6bb3a4e86d971f5df6571e32ef40597f
|
|
| MD5 |
5123142d973a563f09ee5275bc89dab8
|
|
| BLAKE2b-256 |
a6e4824d4dc86688e3661c6cb3c8a8674fc4c1364947c319ac49584b5618a24e
|
File details
Details for the file decidio-0.1.1-py3-none-any.whl.
File metadata
- Download URL: decidio-0.1.1-py3-none-any.whl
- Upload date:
- Size: 52.7 kB
- Tags: Python 3
- Uploaded using Trusted Publishing? No
- Uploaded via:
twine/7.0.0 CPython/3.12.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
a7741671bac458cbdfa143b133ef836d64a05e3970d7104be79f98ce8d08c6b1
|
|
| MD5 |
410e0b8d3842ca562eb787679c29755a
|
|
| BLAKE2b-256 |
40964099901f3d341ec28c20ca77b75c7de513e447e503b539840d83d555ac68
|