EVEN · RECEIPT LAYER FOR AI AGENTS

Every agent action, accounted for.

Signed, hash-chained receipts for every tool call and LLM call. Per-action cost, policy verdicts, and proof your auditors can check, not logs you have to trust.

sha256 · ed25519 · append-only · tamper-evident

THE PROBLEM

Agents are spending, deciding, and acting, with no receipt.

CFO

Agent spend is a black box

One runaway loop can burn a monthly budget before anyone notices. Even attributes every cent to an action, and hard-stops at the budget.

CTO

You can't replay what you can't prove

Traces you can re-walk and verify cryptographically. If a single byte changes at rest, the chain tells you exactly where.

CISO

Auditors don't accept vibes

Append-only, tamper-evident evidence with PII scrubbed before it is ever written down. Exportable in one click.

9f2c41aa…extract_invoice$0.000021ALLOW
71bd08e3…match_vendor$0.000012ALLOW
c4a9f102…approve_payment_high_value$0.000012REVIEW
3e77b5d0…convert_currency$0.000006ALLOW
b812ed47…send_email$0.000000BLOCK
05cc39a1…approve_payment$0.000011ALLOW
da60f7c2…extract_invoice$0.000022ALLOW
8834aa19…approve_payment$0.000011ALLOW
9f2c41aa…extract_invoice$0.000021ALLOW
71bd08e3…match_vendor$0.000012ALLOW
c4a9f102…approve_payment_high_value$0.000012REVIEW
3e77b5d0…convert_currency$0.000006ALLOW
b812ed47…send_email$0.000000BLOCK
05cc39a1…approve_payment$0.000011ALLOW
da60f7c2…extract_invoice$0.000022ALLOW
8834aa19…approve_payment$0.000011ALLOW

HOW IT WORKS

From tool call to proof in four steps.

01

Wrap

One function around your agent. Any framework, any model, five lines of code.

02

Sign

Every action becomes an ed25519-signed receipt, hash-chained to the one before it.

03

Enforce

Budgets, blocked tools and PII redaction execute before the tool ever runs.

04

Verify

Anyone can re-walk the chain. Tampering localizes to the exact broken link.

THE PROOF

Break one byte. Watch the chain confess.

Verification re-walks the entire ledger: sequence, linkage, recomputed hashes, signatures. The first broken link is named exactly, with its sequence number.

Try the tamper demo live
even verify
 
 
 
 
 
 
200
invoices processed
478
receipts chained
1
injection blocked
~2 ms
per signed receipt

Stop trusting. Start verifying.