local-json-file-v1
Parsed-JSON equality of one regular JSON file.
One file. No writes. Not a remote provider, not authorship, not persistence after the read.
Ten local source adapters. Each reuses symlink rejection, size bounds, and identity-at-open (or the symlink adapter's inverse of that posture). None of them fetch a URL or write the source.
local-json-file-v1Parsed-JSON equality of one regular JSON file.
One file. No writes. Not a remote provider, not authorship, not persistence after the read.
local-json-pointer-v1Parsed-JSON equality of the single value at one RFC 6901 JSON Pointer.
Exports only the resolved value, never sibling keys. Prototype-chain steps are POINTER_NOT_FOUND.
local-file-sha256-v1Content-hash equality of any file type (code, markdown, config, binary).
Exports {sha256,bytes} only. Raw bytes never enter the receipt.
local-file-lines-v1Content-hash equality of one contiguous 1-based inclusive line range of a UTF-8 text file.
Exports {start,end,sha256,lines}. Insensitive to edits outside the claimed range.
local-file-bytes-v1Content-hash equality of one contiguous 0-based byte range. Never decodes as text.
For binary files where line semantics do not apply. Exports {offset,length,sha256}.
local-dir-manifest-v1Content equality of one directory's direct, non-recursive regular files.
Name-sorted {name,sha256,bytes} plus count. Rejects subdirectories and any symlink.
local-dir-tree-v1Content equality of one directory's full recursive tree of regular files.
Path-sorted {path,sha256,bytes}. Bounded to 4096 nodes, 32 levels, 1 MiB. Never follows links.
local-symlink-target-v1The literal target string of a symlink, read with readlink and never followed.
A dangling link still verifies. The pointed-to file is never opened, so its contents cannot leak.
local-env-key-v1The string value of ONE KEY in a dotenv-style KEY=VALUE file.
Last duplicate wins. Sibling keys never enter the receipt. Does not expand ${OTHER} interpolations.
local-file-mode-v1Permission bits and size of one regular file, without reading its bytes.
Exports {mode,size} only (mode is the 0o777 bits as a 3-digit octal string). Content is not hashed.
Run node src/cli.mjs fixtures/pass.json after cloning the repository. Hosted upload stays disabled; this catalog is documentation, not an evaluation API.