Export and validate claim/evidence recurrence decisions - #5
Merged
Merged
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Outcome
VerifAxis 0.2.0 exports a complete claim/evidence recurrence artifact and validates it offline. The artifact binds the explicit claim, verifier packets, packet hashes, complete recurrence trace, derived evidence chain, and named stopping decision. Conflicting writes remain no-clobber.
The public verifier treats artifact files as untrusted strict UTF-8 JSON and now enforces a 1 MiB file limit, 32-level depth limit, 50,000-node limit, and 1,024-packet limit. Duplicate keys, malformed Unicode, digest tampering, trace-chain tampering, and conflicting summaries fail closed.
The OpenAI-compatible adapter refuses credential-like headers over remote plain HTTP, permits credentialed HTTP only for explicit loopback testing, rejects URL-embedded credentials, bounds/strictly parses response JSON, and redacts transport error details.
Research and security boundary
This remains an exploratory alpha runtime, not a truth machine, sandbox, hallucination eliminator, or evidence-authentication system. Evidence can contain prompts, candidates, verifier output, counterexamples, and timestamps and must be handled as sensitive data.
Validation
License-Expression: Apache-2.0git diff --check: passPublication is separate from this PR. PyPI currently has no
verifaxisproject, and no repository publisher credential or trusted-publisher configuration is available in this environment.