Skip to content

Validate Context Firewall packet-v1 receipts - #1

Merged
sneakocom merged 1 commit into
mainfrom
feat/context-firewall-packet-validation
Aug 25, 2026
Merged

sneakocom merged 1 commit into
mainfrom
feat/context-firewall-packet-validation

Conversation

@sneakocom

Copy link
Copy Markdown
Contributor

Summary

  • add a dependency-free Context Firewall packet-v1 validator with receipt-only and source-backed verification
  • independently verify canonical hashes, line provenance, classification, suppression accounting, measurements, and NEEDS_RAW_EVIDENCE semantics
  • add a machine-readable CLI, 24 public-safe conformance vectors, CI, and exact-revision interoperability tooling

Verification

  • npm run lint
  • npm test: 46/46 passed
  • npm run conformance: 24/24 vectors passed
  • Context Firewall interoperability: 5/5 passed against dd34bd9f681314761f1ca87f339648bf611811f3
  • tampered packet rejected as CRYPTOGRAPHIC_MISMATCH
  • gitleaks: no leaks found
  • git diff --check: passed

Boundary

No model/provider experiment was run. This validates receipts; it does not establish that reduced evidence preserves model correctness, and EXP-001 remains PLANNED.

@sneakocom
sneakocom marked this pull request as ready for review August 25, 2026 06:37
@sneakocom
sneakocom merged commit cc220ab into main Aug 25, 2026
1 check passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant