Skip to main content

Zero-infrastructure verification of EMILIA Protocol trust receipts (Ed25519 + Merkle). Byte-compatible with @emilia-protocol/verify.

Project description

emilia-verify (Python)

Zero-infrastructure verification of EMILIA Protocol trust receipts — pure Python, one dependency (cryptography). A faithful port of @emilia-protocol/verify: recursive canonical JSON + Ed25519 (SPKI-DER public key) + sorted-pair Merkle anchors.

The guarantee: a receipt signed on the Node side verifies here, and vice versa — proven by a cross-language test (tests/test_verify.py verifies a JS-signed fixture). No EP account, no API key. Just math.

Install

pip install emilia-verify        # once published
# or, from the repo:  pip install packages/python-verify

Use

from emilia_verify import verify_receipt

result = verify_receipt(receipt_doc, signer_public_key_base64url)
if result.valid:
    print("authorized by", receipt_doc["payload"]["claim"]["approver"])
else:
    print("rejected:", result.checks, result.error)

verify_receipt(doc, public_key_base64url) -> VerifyResult(valid, checks, error) checks the version, the Ed25519 signature over the canonical payload, and (when present) the Merkle anchor. It never raises on bad input — a malformed receipt returns valid=False.

Also exported: verify_merkle_anchor(leaf_hash, proof, expected_root) and canonicalize(value) (the exact canonical-JSON used for signing).

Why this exists

A trust receipt is only as useful as the number of places that can check it. Shipping a verifier in the Python agent ecosystem (LangChain, CrewAI, AutoGen, LlamaIndex) means a receipt minted anywhere can be verified offline, in the language your agent already speaks.

Publishing (maintainers)

Direct local upload is intentionally unsupported. Create the version-matching python-verify-v<version> tag from merged main, then manually dispatch publish-python-verify.yml with the exact typed confirmation and approve the protected registry-publishing-approval job. The workflow builds twice, attests the exact wheel and source distribution, publishes through PyPI OIDC, and byte-compares both registry artifacts.

Apache-2.0.

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

emilia_verify-2.5.1.tar.gz (58.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

emilia_verify-2.5.1-py3-none-any.whl (39.8 kB view details)

Uploaded Python 3

File details

Details for the file emilia_verify-2.5.1.tar.gz.

File metadata

  • Download URL: emilia_verify-2.5.1.tar.gz
  • Upload date:
  • Size: 58.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.13

File hashes

Hashes for emilia_verify-2.5.1.tar.gz
Algorithm Hash digest
SHA256 3db9e1b6c5f66e1197ba4cee238612f18fe35420f5ad200304da5a304c0780b4
MD5 7bee5e0665443d9e60c2e840d50a542f
BLAKE2b-256 49a55333158840a21153c9922cf6c8964d24292db49967d79e4f2b0962834fd5

See more details on using hashes here.

Provenance

The following attestation bundles were made for emilia_verify-2.5.1.tar.gz:

Publisher: publish-python-verify.yml on emiliaprotocol/emilia-protocol

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file emilia_verify-2.5.1-py3-none-any.whl.

File metadata

  • Download URL: emilia_verify-2.5.1-py3-none-any.whl
  • Upload date:
  • Size: 39.8 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.13

File hashes

Hashes for emilia_verify-2.5.1-py3-none-any.whl
Algorithm Hash digest
SHA256 ffb74813a153fe5e0082223e15ba1555049e281dfde235d90b5ad1b55e55aa45
MD5 940cd5a5f07313d95eab12db3304aff3
BLAKE2b-256 2f1b07e08a1c36901a5bb54839b8926ce56467d35af3e94bc35367e011750c61

See more details on using hashes here.

Provenance

The following attestation bundles were made for emilia_verify-2.5.1-py3-none-any.whl:

Publisher: publish-python-verify.yml on emiliaprotocol/emilia-protocol

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page