Skip to main content

GovZero Kit: A Development Covenant for Human-AI Collaboration

Project description

gzkit

GovZero Kit: A Development Covenant for Human-AI Collaboration

Version Python 3.13+ License: MIT Docs CI Docs Code Style: Ruff Package Manager: uv

Documentation Release Notes Roadmap

gzkit is cognitive infrastructure for extended human-AI collaboration—a protocol that preserves human intent across agent context boundaries, gives agents constraints to reason against, creates verification loops both parties trust, and reserves final judgment for humans.

Why gzkit?

Modern AI-assisted development faces a structural problem: agents are powerful but context-bound. They drift without constraints, forget across sessions, and can't distinguish between "should do" and "could do." Humans provide intent and judgment but can't scale execution.

gzkit bridges this gap by formalizing the collaboration:

Role Human Agent
Intent Originates Interprets, clarifies
Constraints Defines, enforces Operates within, flags violations
Exploration Guides Executes, surfaces options
Judgment Final authority Proposes, explains tradeoffs
Memory Long-term, cross-project Session-bound, needs scaffolding
Verification Attests Generates evidence

Three Concerns

gzkit spans three distinct but interrelated concerns:

Concern Purpose Primary Audience
Specification Invariants, constraints, acceptance criteria Agent (grounding)
Methodology Phases, workflows, checkpoints Process (structure)
Governance Authority, attestation, audit Human (oversight)

Specification is agent-native: explicit constraints, declarative intent, immutable canon.

Methodology is process-native: phases, gates, verification loops.

Governance is human-native: attestation rituals, authority boundaries, audit ceremonies.

All three are necessary. Specification without governance drifts. Governance without methodology is theater. Methodology without specification is arbitrary.

The Covenant

gzkit implements a development covenant—a binding agreement between human and agent:

  1. Human defines intent through canon, ADRs, and acceptance criteria
  2. Agent operates within constraints and flags potential violations
  3. Verification is mutual through tests, checks, and evidence
  4. Human attests completion after observing artifacts
  5. Artifacts survive sessions preserving intent across context boundaries

This is not "AI governance" in the compliance sense. It's a protocol for productive partnership.

Lineage

gzkit evolved from:

  • GitHub spec-kit — the constitute → specify → plan → implement → analyze phase model
  • GovZero — governance framework developed in AirlineOps through ~100 work items of iterative learning
  • Claude Code conventions — CLAUDE.md patterns for agent-native constraint specification

See docs/lineage.md for full heritage.

Five Gates

Work flows through five gates, adapted by lane (Lite or Heavy):

Gate Name Purpose
1 ADR Record intent and tradeoffs before implementation
2 TDD Red-Green-Refactor: tests derived from spec, not implementation
3 Docs Ensure documentation describes actual behavior
4 BDD Verify external contracts through acceptance tests
5 Human Human observes artifacts and attests completion

Lite lane (internal changes): Gates 1, 2

Heavy lane (external contracts): Gates 1, 2, 3, 4, 5

Workflow Lifecycle

  DEFINE        PLAN          BUILD         VERIFY        ATTEST        RELEASE
 ┌──────┐    ┌──────┐    ┌──────────┐    ┌──────┐    ┌──────┐    ┌──────────┐
 │Design│───▶│  ADR │───▶│ Pipeline │───▶│Gates │───▶│Human │───▶│ Closeout │
 │ PRD  │    │ OBPI │    │ TDD Impl │    │Check │    │Attest│    │ Release  │
 └──────┘    └──────┘    └──────────┘    └──────┘    └──────┘    └──────────┘
  gz-design   gz-adr-      gz-obpi-       gz-check    gz-adr-     gz-patch-
  gz-prd      create       pipeline       gz-gates    closeout-   release
              gz-obpi-     gz-obpi-       gz-validate ceremony
              specify      simplify

Skill Catalog

Category Skills
ADR Lifecycle gz-adr-create, gz-adr-evaluate, gz-adr-promote, gz-adr-status, gz-design, gz-plan
ADR Operations gz-adr-autolink, gz-adr-emit-receipt, gz-adr-map, gz-adr-recon, gz-adr-sync
ADR Audit & Closeout gz-adr-audit, gz-adr-closeout-ceremony, gz-patch-release
OBPI Pipeline gz-obpi-lock, gz-obpi-pipeline, gz-obpi-reconcile, gz-obpi-simplify, gz-obpi-specify, gz-plan-audit
Governance Infrastructure gz-constitute, gz-gates, gz-implement, gz-init, gz-prd, gz-state, gz-status, gz-validate
Agent & Repository git-sync, gz-agent-sync, gz-check-config-paths, gz-migrate-semver, gz-session-handoff, gz-tidy
Code Quality gz-check, gz-chore-runner, gz-cli-audit
Routing gz-skill-router

For details on any skill, read its SKILL.md in .gzkit/skills/<skill-name>/.

Installation

# Using uv (recommended)
uv add gzkit

# Or pip
pip install gzkit

Quick Start

# Initialize gzkit in a project
gz init

# Create a new ADR
gz plan create feature --title "Feature description"

# Check gate status
gz status

# Run verification
gz check

Configuration

gzkit uses .gzkit.json for project configuration:

{
  "mode": "lite",
  "paths": {
    "canon": "docs/canon",
    "adrs": "docs/adr",
    "specs": "docs/specs"
  }
}

Documentation

  • Charter — The covenant itself
  • Lineage — Heritage from spec-kit and GovZero
  • Concepts — The three concerns explained
  • Genesis — Origin story and founding conversation

Philosophy

Governance is verification, not celebration.

gzkit treats governance as executable documentation. All state lives in Markdown, validated by a Python CLI. The framework is human-centric, auditable, and version-controlled.

Prompts are code. Constraints are first-class. Human attestation is the final gate.

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

py_gzkit-0.25.4.tar.gz (4.7 MB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

py_gzkit-0.25.4-py3-none-any.whl (491.3 kB view details)

Uploaded Python 3

File details

Details for the file py_gzkit-0.25.4.tar.gz.

File metadata

  • Download URL: py_gzkit-0.25.4.tar.gz
  • Upload date:
  • Size: 4.7 MB
  • Tags: Source
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for py_gzkit-0.25.4.tar.gz
Algorithm Hash digest
SHA256 b6fd2d615be5ef174dbe253e2bd0103cd337365a7ccd3b2fc0cf9a273db87397
MD5 016286fe777fe226d30d3a8e37fc4ac9
BLAKE2b-256 307223a0349c6b269bc78fad764ab736deedccf88fe03fe2f2d07e0005655012

See more details on using hashes here.

Provenance

The following attestation bundles were made for py_gzkit-0.25.4.tar.gz:

Publisher: release.yml on tvproductions/gzkit

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

File details

Details for the file py_gzkit-0.25.4-py3-none-any.whl.

File metadata

  • Download URL: py_gzkit-0.25.4-py3-none-any.whl
  • Upload date:
  • Size: 491.3 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? Yes
  • Uploaded via: twine/6.1.0 CPython/3.13.12

File hashes

Hashes for py_gzkit-0.25.4-py3-none-any.whl
Algorithm Hash digest
SHA256 f27cc8518c98e62eae53e63786eaf4b2b6be3acf22b131c48903a0f898533f38
MD5 d67ab082356d9655350bf0efaea0ee87
BLAKE2b-256 47249b0302a416ef6ba90efab9623a8cee3232d9749fa62a9affc278426c43ec

See more details on using hashes here.

Provenance

The following attestation bundles were made for py_gzkit-0.25.4-py3-none-any.whl:

Publisher: release.yml on tvproductions/gzkit

Attestations: Values shown here reflect the state when the release was signed and may no longer be current.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page