Skip to main content

GovZero Kit: A Development Covenant for Human-AI Collaboration

Project description

gzkit

GovZero Kit: A Development Covenant for Human-AI Collaboration

Version Python 3.13+ License: MIT Docs CI Docs Code Style: Ruff Package Manager: uv

Documentation Release Notes Roadmap

gzkit is cognitive infrastructure for extended human-AI collaboration—a protocol that preserves human intent across agent context boundaries, gives agents constraints to reason against, creates verification loops both parties trust, and reserves final judgment for humans.

Why gzkit?

Modern AI-assisted development faces a structural problem: agents are powerful but context-bound. They drift without constraints, forget across sessions, and can't distinguish between "should do" and "could do." Humans provide intent and judgment but can't scale execution.

gzkit bridges this gap by formalizing the collaboration:

Role Human Agent
Intent Originates Interprets, clarifies
Constraints Defines, enforces Operates within, flags violations
Exploration Guides Executes, surfaces options
Judgment Final authority Proposes, explains tradeoffs
Memory Long-term, cross-project Session-bound, needs scaffolding
Verification Attests Generates evidence

Three Concerns

gzkit spans three distinct but interrelated concerns:

Concern Purpose Primary Audience
Specification Invariants, constraints, acceptance criteria Agent (grounding)
Methodology Phases, workflows, checkpoints Process (structure)
Governance Authority, attestation, audit Human (oversight)

Specification is agent-native: explicit constraints, declarative intent, immutable canon.

Methodology is process-native: phases, gates, verification loops.

Governance is human-native: attestation rituals, authority boundaries, audit ceremonies.

All three are necessary. Specification without governance drifts. Governance without methodology is theater. Methodology without specification is arbitrary.

The Covenant

gzkit implements a development covenant—a binding agreement between human and agent:

  1. Human defines intent through canon, ADRs, and acceptance criteria
  2. Agent operates within constraints and flags potential violations
  3. Verification is mutual through tests, checks, and evidence
  4. Human attests completion after observing artifacts
  5. Artifacts survive sessions preserving intent across context boundaries

This is not "AI governance" in the compliance sense. It's a protocol for productive partnership.

Lineage

gzkit evolved from:

  • GitHub spec-kit — the constitute → specify → plan → implement → analyze phase model
  • GovZero — governance framework developed in AirlineOps through ~100 work items of iterative learning
  • Claude Code conventions — CLAUDE.md patterns for agent-native constraint specification

See docs/lineage.md for full heritage.

Five Gates

Work flows through five gates, adapted by lane (Lite or Heavy):

Gate Name Purpose
1 ADR Record intent and tradeoffs before implementation
2 TDD Red-Green-Refactor: tests derived from spec, not implementation
3 Docs Ensure documentation describes actual behavior
4 BDD Verify external contracts through acceptance tests
5 Human Human observes artifacts and attests completion

Lite lane (internal changes): Gates 1, 2

Heavy lane (external contracts): Gates 1, 2, 3, 4, 5

Workflow Lifecycle

  DEFINE        PLAN          BUILD         VERIFY        ATTEST        RELEASE
 ┌──────┐    ┌──────┐    ┌──────────┐    ┌──────┐    ┌──────┐    ┌──────────┐
 │Design│───▶│  ADR │───▶│ Pipeline │───▶│Gates │───▶│Human │───▶│ Closeout │
 │ PRD  │    │ OBPI │    │ TDD Impl │    │Check │    │Attest│    │ Release  │
 └──────┘    └──────┘    └──────────┘    └──────┘    └──────┘    └──────────┘
  gz-design   gz-adr-      gz-obpi-       gz-check    gz-adr-     gz-patch-
  gz-prd      create       pipeline       gz-gates    closeout-   release
              gz-obpi-     gz-obpi-       gz-validate ceremony
              specify      simplify

Skill Catalog

Category Skills
ADR Lifecycle gz-adr-create, gz-adr-evaluate, gz-adr-promote, gz-adr-status, gz-design, gz-plan
ADR Operations gz-adr-autolink, gz-adr-emit-receipt, gz-adr-map, gz-adr-recon, gz-adr-sync
ADR Audit & Closeout gz-adr-audit, gz-adr-closeout-ceremony, gz-patch-release
OBPI Pipeline gz-obpi-lock, gz-obpi-pipeline, gz-obpi-reconcile, gz-obpi-simplify, gz-obpi-specify, gz-plan-audit
Governance Infrastructure gz-constitute, gz-gates, gz-implement, gz-init, gz-prd, gz-state, gz-status, gz-validate
Agent & Repository git-sync, gz-agent-sync, gz-check-config-paths, gz-migrate-semver, gz-session-handoff, gz-tidy
Code Quality gz-check, gz-chore-runner, gz-cli-audit
Routing gz-skill-router

For details on any skill, read its SKILL.md in .gzkit/skills/<skill-name>/.

Installation

# Using uv (recommended)
uv add gzkit

# Or pip
pip install gzkit

Quick Start

# Initialize gzkit in a project
gz init

# Create a new ADR
gz plan create feature --title "Feature description"

# Check gate status
gz status

# Run verification
gz check

Configuration

gzkit uses .gzkit.json for project configuration:

{
  "mode": "lite",
  "paths": {
    "canon": "docs/canon",
    "adrs": "docs/adr",
    "specs": "docs/specs"
  }
}

Documentation

  • Charter — The covenant itself
  • Lineage — Heritage from spec-kit and GovZero
  • Concepts — The three concerns explained
  • Genesis — Origin story and founding conversation

Philosophy

Governance is verification, not celebration.

gzkit treats governance as executable documentation. All state lives in Markdown, validated by a Python CLI. The framework is human-centric, auditable, and version-controlled.

Prompts are code. Constraints are first-class. Human attestation is the final gate.

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

py_gzkit-0.25.15.tar.gz (18.6 MB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

py_gzkit-0.25.15-py3-none-any.whl (602.1 kB view details)

Uploaded Python 3

File details

Details for the file py_gzkit-0.25.15.tar.gz.

File metadata

  • Download URL: py_gzkit-0.25.15.tar.gz
  • Upload date:
  • Size: 18.6 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for py_gzkit-0.25.15.tar.gz
Algorithm Hash digest
SHA256 5af4086ff8db4af3768be6a6123ed580bda41c27dc1703f3cead50eaafd41533
MD5 1584d9befbf9d45b881ae124b1b25b7d
BLAKE2b-256 f8f6b41f6293545664f21ac009490421acf155844ab5c97cedea3ca123d84c96

See more details on using hashes here.

Provenance

The following attestation bundles were made for py_gzkit-0.25.15.tar.gz:

Publisher: release.yml on tvproductions/gzkit

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file py_gzkit-0.25.15-py3-none-any.whl.

File metadata

  • Download URL: py_gzkit-0.25.15-py3-none-any.whl
  • Upload date:
  • Size: 602.1 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for py_gzkit-0.25.15-py3-none-any.whl
Algorithm Hash digest
SHA256 887820dbc5e1037222b13e380f97ce495aa575e985a3ec4797ce3d39c965bbb9
MD5 6e9718e8ad43709a1a5aea4385c1e8a1
BLAKE2b-256 b10df59f078a83ba9f3041c43c87742d93500947e27cc6fa44c91b8cbf7669a9

See more details on using hashes here.

Provenance

The following attestation bundles were made for py_gzkit-0.25.15-py3-none-any.whl:

Publisher: release.yml on tvproductions/gzkit

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page