The named public release candidate was observed in GitHub as a credential-free seller-conformance CLI and Action; the public source tree sets package.json private:true, and no npm package is published.
Sch. RRecord schedule
The exact scope of the filed claim.
- Record ID
- rec_hbDwOFwSshWPQhUTBwf-yDdQ
- Subject
- github:epistemedeus/agent-payment-integrity@v0.1.0-candidate.11
- Issuer
- Neomorphic LLC
- Instrument
- Observatory
- Method and version
- public-release-observation-v1 · observed
- Covered scope
- GitHub release v0.1.0-candidate.11 · public repository package metadata · documented audit modes
- Covered versions
- v0.1.0-candidate.11 · git 501a7381988782688bf8a16df3a9443c897dd30a
- Observed at
- Aug 29, 2026, 09:46 PM UTC
- Valid until
- Sep 28, 2026, 10:00 PM UTC
- Supersedes
- None
- Correction / revocation reference
- https://neomorphic.io/registry/rec_hbDwOFwSshWPQhUTBwf-yDdQ/#revocation
No real-time revocation transport is offered; a change requires a later signed static Register publication.
§ Ev.Evidence boundary
Public-safe facts only.
Release tag, full commit identity, package.json private:true flag, absence of an npm publication, credential-free CLI and Action documentation, and GET-unpaid versus POST-contract-only boundary.
- This record does not call the release stable or npm-published.
- Credential-free checks do not prove settlement, paid delivery, future availability, or general safety.
- The record does not claim an independent release review, independent adoption, revenue, or commercial demand.
Raw requests, query values, credentials, confidential schemas, response bodies, private authority schedules, identity documents, and customer names are not published by default.
§ Src.Sources
public GitHub release and repository metadata
§ Sig.Origin and integrity
A signature with a stated limit.
- Key ID
- neomorphic-evidence:S5luZKJSkSTS7ixne0SyHsylFf1CXNpR6-WrmZjy7c0
- Algorithm
- EdDSA · neomorphic-canonical-json-v1
- Evidence-metadata digest
- sha256:47b8ddb705431d0680d6c9fe62ba902783ac1d7064c4966fca23cd38f933bff3
SHA-256 of the canonical public
evidencemember. It does not hash or freeze linked source artifacts. - Signature
- gsPanGqV-z4TPeiPbp2jQhccFmT7eNbwlYIL7clSXvzGIHni9E8PitBF3uqrKUcx72MrA6gTjrR2QmJm4F6sDg
Signed JSON
{
"schema": "neomorphic.evidence-record.v1",
"record_id": "rec_hbDwOFwSshWPQhUTBwf-yDdQ",
"record_type": "release_observation",
"subject": {
"type": "software_release",
"id": "github:epistemedeus/agent-payment-integrity@v0.1.0-candidate.11",
"display_name": "agent-payment-integrity v0.1.0-candidate.11"
},
"claim": {
"statement": "The named public release candidate was observed in GitHub as a credential-free seller-conformance CLI and Action; the public source tree sets package.json private:true, and no npm package is published.",
"scope": [
"GitHub release v0.1.0-candidate.11",
"public repository package metadata",
"documented audit modes"
],
"covered_versions": [
"v0.1.0-candidate.11",
"git 501a7381988782688bf8a16df3a9443c897dd30a"
]
},
"method": {
"instrument": "Observatory",
"version": "public-release-observation-v1",
"mode": "observed",
"checker": "Neomorphic LLC"
},
"result": {
"status": "observed",
"summary": "Neomorphic LLC performed this first-party observation of a Neomorphic-owned release candidate. The public GitHub surfaces support the bounded description recorded above; no independent release review is claimed.",
"limitations": [
"This record does not call the release stable or npm-published.",
"Credential-free checks do not prove settlement, paid delivery, future availability, or general safety.",
"The record does not claim an independent release review, independent adoption, revenue, or commercial demand."
]
},
"evidence": {
"source_authority": "public GitHub release and repository metadata",
"public_sources": [
"https://github.com/epistemedeus/agent-payment-integrity/releases/tag/v0.1.0-candidate.11",
"https://github.com/epistemedeus/agent-payment-integrity"
],
"retained_summary": "Release tag, full commit identity, package.json private:true flag, absence of an npm publication, credential-free CLI and Action documentation, and GET-unpaid versus POST-contract-only boundary."
},
"issued_at": "2026-08-29T21:52:42Z",
"observed_at": "2026-08-29T21:46:12Z",
"expires_at": "2026-09-28T22:00:00Z",
"supersedes": null,
"revocation_url": "https://neomorphic.io/registry/rec_hbDwOFwSshWPQhUTBwf-yDdQ/#revocation",
"evidence_digest": "sha256:47b8ddb705431d0680d6c9fe62ba902783ac1d7064c4966fca23cd38f933bff3",
"signature": {
"algorithm": "EdDSA",
"canonicalization": "neomorphic-canonical-json-v1",
"key_id": "neomorphic-evidence:S5luZKJSkSTS7ixne0SyHsylFf1CXNpR6-WrmZjy7c0",
"value": "gsPanGqV-z4TPeiPbp2jQhccFmT7eNbwlYIL7clSXvzGIHni9E8PitBF3uqrKUcx72MrA6gTjrR2QmJm4F6sDg"
}
}