Skip to main content

CI

Expflow

Expflow is a schema-governed, local-first workflow ownership and observability platform for projects where people, agents, and tools produce changing artifact trees.

Expflow records what changed, which evidence was trusted, which decisions remain durable, and which outputs can be inspected, regenerated, restored, or reused.

Current release: v1.0.1.

What Expflow Tracks

Expflow separates five concerns that are often blurred in automated work:

  • material files before and after workflow activity;
  • accepted authority sources for the work;
  • attributed claims, decisions, conflicts, and review requests;
  • workflow inputs, outputs, projections, regeneration attempts, equivalence evaluations, and reuse evidence;
  • local security, migration, package, and proof evidence.

Material output does not imply semantic acceptance, workflow completion, or reuse permission. Expflow keeps those records separate.

Release Scope

Expflow v1.0.1 covers the local core surfaces implemented in this repository:

  • four ordinary commands: expflow init, expflow sync, expflow status, and expflow restore;
  • local .expflow/ material storage with immutable object, node-revision, tree-revision, receipt, validation, change, and material-head records;
  • complete-tree sync, drift status, tree/node restore, scoped path selection, explicit identity directives, and digest-similarity proposals without silent identity preservation;
  • project locks, operation-scoped staging, recoverable init/restore intents, stale-lock classification, causal tree/receipt head repair, restore recovery, and restored-tree digest verification;
  • library runtimes for authority sources, semantic decisions, workflow boundaries, projections, regeneration/equivalence, structural reuse, security controls, migration evidence, and the native extension host;
  • repository-contract checks for immutable architecture sources, schemas, examples, fixtures, registries, package boundaries, and end-to-end proof.

Quickstart

With the npm package available from the public registry:

npm install -g expflow
expflow init
expflow status

The npm package exposes the expflow CLI and TypeScript library exports. The Python package is a separate hook scaffold with read-only repository architecture discovery; it does not dispatch or execute hooks.

Installation

After verified registry publication, install the primary Expflow CLI and TypeScript package with:

npm install -g expflow

Install the Python hook scaffold separately with:

pip install expflow-hooks

expflow-hooks is not the primary Expflow CLI implementation. It exposes the limited Python hook/scaffold package and expflow_hooks import surface.

Workflow

  1. Run expflow init to create local Expflow state.
  2. Change files in the project tree.
  3. Run expflow sync to record a complete material tree revision.
  4. Run expflow status to inspect drift and recorded state.
  5. Run expflow restore when a recorded tree or node revision should be restored.

Gate C ownership/reproduction behavior and Gate D security/migration behavior are available through library runtimes rather than additional ordinary commands.

Commands

Command Purpose
expflow init Initialize local Expflow project state.
expflow sync Scan the working tree and commit a complete material tree revision.
expflow status Report local drift and material project state.
expflow restore Restore a recorded material tree or node revision.

What Expflow Delegates

Expflow core intentionally does not implement every surrounding integration surface.

  • Adapter inspection and reconciliation: belongs in separately versioned adapter packages.
  • External revision cursors and idempotency: outside the core repository.
  • Guerilla hook dispatch: compatibility reference only, not an Expflow core runtime.
  • Network services, databases, and brokers: absent from the local core.
  • Archive extraction and generated-code execution: blocked by the Gate D security posture.
  • Pilots and empirical evaluation: future work outside the v1.0.1 core release.

Repository Map

  • docs/architecture/ contains immutable architecture sources.
  • docs/ contains mutable implementation evidence, completion reports, release notes, review summaries, and orientation.
  • schemas/ and examples/ mirror the architecture schemas and examples for tooling.
  • src/ contains the TypeScript package, CLI, material runtime, Gate C library runtimes, Gate D security/migration runtimes, and contract tooling.
  • python/expflow_hooks/ contains the Python hook-package scaffold and repository-only schema discovery.
  • tests/ contains repository-contract, material-runtime, authority, Gate C ownership/reproduction, Gate D security/migration, package, and end-to-end proof tests.

For implementation status, see docs/CURRENT_STATUS_MATRIX.md. For contributor setup and validation commands, see README_DEV.md.

Validation

npm ci
npm run validate
python -m pip install -e ".[dev]"
python -m pytest
python -m build --wheel
python tests/contracts/verify_python_wheel.py

Documentation

License

Expflow is released under the MIT License.

Release files for expflow-hooks 1.0.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for expflow-hooks 1.0.1
File Size Uploaded
expflow_hooks-1.0.1.tar.gz 5.5 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for expflow-hooks 1.0.1
File Interpreter ABI Platform
expflow_hooks-1.0.1-py3-none-any.whl Python 3 none any Details

Total release size: 11.3 kB

Release files / expflow_hooks-1.0.1.tar.gz

Download URL expflow_hooks-1.0.1.tar.gz
Size 5.5 kB
Tags Source
SHA-256 checksum
How to use checksums
8bc6ed420349c04c6bcd61b11acf1948c83865c3962cf64faef2e91c7f931845
BLAKE2b-256 checksum
How to use checksums
e733c0861c69cc5cb1c52b4b72cb745d435433bc6b105e5ed784cad92f4aafae
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.13

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Jul 18, 2026.

Transparency log

Release files / expflow_hooks-1.0.1-py3-none-any.whl

Download URL expflow_hooks-1.0.1-py3-none-any.whl
Size 5.8 kB
Tags Python 3
SHA-256 checksum
How to use checksums
13bee1818acd412ebc4e289c73f8c062261854ffe1617589388ef50253743b50
BLAKE2b-256 checksum
How to use checksums
615a0275f97cf69b6d42d74b4da9c591889227e8213f40b42f5d21c99071ad59
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
Yes
Uploaded via twine/6.1.0 CPython/3.13.13

Provenance

Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.

PyPI Publish Attestation

PyPI verified that this artifact, at this checksum, originated from the publisher listed below.

Signed by GitHub Actions, verified by PyPI on Jul 18, 2026.

Transparency log

Release history Release notifications | RSS feed

1.1.0

2 release files

This release

1.0.1 This release

2 release files

1.0.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page