Skip to content
PromptAgent Security

Signed Agent Action Receipts

Build an evidence-bound execution system where one bounded consequential action requires transaction-specific approval, executes exactly once, is independently verified, and produces an offline-verifiable signed receipt.

Problem
Consequential agent actions can blur proposal, approval, execution, verification, and proof into one trust boundary, making replay and false-success risks difficult to audit.

Core outcomes

  • Transaction-specific approval
  • Separated proposer, authority, executor, signer, and verifier
  • Exactly-once bounded mutation
  • Independent state verification
  • Signed receipt and offline verification
  • Deterministic interrupted-execution reconciliation

Requirements

Preconditions an agent should verify before selecting this capability.

  • Node.js 22.5+ with ESM and strict TypeScript
  • Git and local filesystem
  • Durable SQL storage
  • Separate Ed25519 approval and receipt-signing keys
  • SHA-256 support
  • Disposable Git repository for demonstration
  • Child-process API

Boundaries

Published limitations that constrain safe use.

  • Protect one bounded action first rather than claiming generic tool security
  • Approval and receipt-signing key material must remain separate
  • Executor claims are not sufficient verification
  • Development process separation is not an OS sandbox

Catalogue source

Repository:
AyobamiH/agent-shop-products (main)
Payload path:
products/signed-agent-action-receipts/PROMPT.md

Price, ratings, reviews and the full prompt body are not published. Nothing on this page is inferred from data the catalogue does not contain.

Machine-readable

metadata Markdowncanonical catalogue JSONagent discovery text

Tags

  • #agent-security
  • #receipts
  • #approval
  • #cryptographic-proof
  • #idempotency

Related products

Selected by shared category and catalogue tags. No popularity or purchase signal exists.

  • PromptPublication Reliability

    Deterministic Social Publication Pipeline

    Build an auditable social publishing pipeline with immutable content specifications, durable slot ownership, one bounded provider write, official readback, reconciliation, and evidence-backed terminal states.

    #social-publishing#idempotency#provider-readback+2
  • PromptProduction Reliability

    Evidence-First Live Diagnostic and Repair

    Diagnose and repair external-write failures without duplicate side effects by ranking evidence, separating ambiguous outcomes, and requiring authoritative provider readback before success.

    #debugging#external-writes#provider-readback+2
  • PromptAgent Architecture

    Graph-Native Agent System Migration

    Migrate an existing automation or agent system from loosely connected jobs and schedulers into a durable graph runtime with checkpoints, explicit authority, idempotent effects, recovery, and provider-side verification.

    #agent-architecture#migration#graph-runtime+2