Dish: Deployment Imitating SWE-Agent Harness
Dish runs Petri alignment audits against real coding-agent scaffolds (Claude Code, Codex CLI, Gemini CLI) instead of a bare model API.
In a standard Petri audit the target is a model: the auditor stages a system prompt, invents synthetic tools, and the target responds via model.generate(). In a Dish audit the target is the model as deployed inside its production scaffold. The scaffold supplies its own real system prompt and its own real tools (bash, read_file, edit_file, …), and the auditor interacts with it the way a human user would. The point is environment realism: the target sees exactly the system prompt, tool definitions, and context-injection format it would see in production, so there are fewer auditor-authored artifacts for it to notice and fewer ways the simulated environment can drift from the real one. Behavior measured under Dish is closer to behavior you'd actually get from the deployed agent.
To learn more about using Dish please visit the project website: https://meridianlabs-ai.github.io/petri_dish/
Release files for petri-dish 0.3.4
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| petri_dish-0.3.4.tar.gz | 50.1 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| petri_dish-0.3.4-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 114.4 kB
Release files / petri_dish-0.3.4.tar.gz
| Download URL | petri_dish-0.3.4.tar.gz |
|---|---|
| Size | 50.1 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
3a2192e928bd0124ed08c42e23286a9e97eba57753345e751ef4aedbf50d0183
|
|
BLAKE2b-256 checksum How to use checksums |
6bf38ee55bdc7c9988918eb7cfeb90178e5cb73ce3f5d41bbec396c02c744202
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 21, 2026.
Transparency logRelease files / petri_dish-0.3.4-py3-none-any.whl
| Download URL | petri_dish-0.3.4-py3-none-any.whl |
|---|---|
| Size | 64.2 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
10332f7f82866a88f96757a62be41422bbc1f2f72ebde0d62e39520d7a0936cf
|
|
BLAKE2b-256 checksum How to use checksums |
40096c47963acee29434f1f6e7d056e363babe1bf131cf7bd29f8bdf7bc35028
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
Yes |
| Uploaded via |
twine/7.0.0 CPython/3.13.14
|
Provenance
Provenance describes where a file came from. On PyPI, provenance is shared via attestations, which provide a verifiable record of the build or publishing details. View details, limitations and caveats.
PyPI Publish Attestation
PyPI verified that this artifact, at this checksum, originated from the publisher listed below.
Signed by GitHub Actions, verified by PyPI on Aug 21, 2026.
Transparency log