evals.intentsolutions.io / runtime-receipt / v1
runtime-receipt/v1DRAFT
Predicate URI:
https://evals.intentsolutions.io/runtime-receipt/v1
What this predicate asserts
A receipt that a specific runtime execution happened with specific inputs and outputs, for replay-fidelity claims.
Where it is used
Reserved for runtime attestation flows.
Machine-readable definition
The canonical JSON Schema (plus matching Zod and Pydantic validators) is version-pinned in
the contracts kernel:
schemas/v1/runtime-receipt.schema.json. The kernel package is
@intentsolutions/core
on npm.
How to verify a statement carrying this predicate
Statements are in-toto v1 Statements, DSSE-signed keyless via sigstore against the public production Rekor transparency log. Given a bundle file and its sigstore bundle:
cosign verify-blob --new-bundle-format --bundle <file>.sigstore.json
--certificate-identity <the emitting workflow's identity> --certificate-oidc-issuer
https://token.actions.githubusercontent.com <file>
Live, verifiable examples: the results browser re-verifies every row before rendering and links each bundle's evidence.