Mnestiq
A flight recorder for AI agents. Tamper-evident, signed evidence of what an agent saw, decided and did, built for incident response.
Mnestiq records every model call, tool call, approval and outbound connection your agent makes, tags every piece of model input with where it came from (user, web page, tool output, another agent), and seals the record with a hash chain and signed checkpoints. When something goes wrong you can name the run, the step and the input that drove it, and prove the record was not edited afterwards.
Install
pip install "mnestiq[anthropic]" # or mnestiq[openai], or plain mnestiq
Use
import anthropic
from mnestiq import FileSink, Recorder
from mnestiq.egress import instrument_egress
from mnestiq.integrations.anthropic import instrument_anthropic
from mnestiq.keys import load_private_key
recorder = Recorder(FileSink("evidence.jsonl"), agent_id="support-bot",
signing_key=load_private_key("keys/signing.key"))
client = instrument_anthropic(anthropic.Anthropic(), recorder)
instrument_egress()
with recorder.run():
... # your agent, unchanged
recorder.close()
mnestiq keygen --out keys
mnestiq verify evidence.jsonl --trusted-key keys/signing.pub
mnestiq dashboard . --trusted-key keys/signing.pub
Links
- Documentation and examples: https://github.com/mnestiq/mnestiq
- Evidence format specification: https://github.com/mnestiq/mnestiq/blob/main/spec/SPEC.md
- Security policy: https://github.com/mnestiq/mnestiq/blob/main/SECURITY.md
Apache-2.0.
Metadata
Release files for mnestiq 0.1.0
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| mnestiq-0.1.0.tar.gz | 70.7 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| mnestiq-0.1.0-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 133.4 kB
Release files / mnestiq-0.1.0.tar.gz
| Download URL | mnestiq-0.1.0.tar.gz |
|---|---|
| Size | 70.7 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
67c07055e7f01ca179fdb6d5ff61c1285a73d0cbca0d107c14f1dde02197a4db
|
|
BLAKE2b-256 checksum How to use checksums |
eea6b535f206bb8921f0bfa694907a8a6fae4d3461be91c812f6c8d7b45be6b7
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 4, 2026.
Transparency logRelease files / mnestiq-0.1.0-py3-none-any.whl
| Download URL | mnestiq-0.1.0-py3-none-any.whl |
|---|---|
| Size | 62.6 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
8ad9774cd3d4eabe1a5e4a7715945df5c330edb840569c43789f254115d93dfa
|
|
BLAKE2b-256 checksum How to use checksums |
e24c17e6a501974370bcfe07be3a1d810c39f800c5f45b272f9af62c4d5166bc
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Oct 4, 2026.
Transparency log