SZLGUARDRAIL RECEIPT

SIGNED DECISION RECEIPTS · IN-BROWSER

Every guardrail verdict,
signed and re-verifiable.

Screen text with a deterministic rule-based guardrail, wrap the ALLOW / BLOCKED verdict in a hash-chained DSSE decision receipt signed with an ephemeral ECDSA‑P256 key generated by your browser, then re-verify every byte right here. A BLOCKED verdict stays BLOCKED — never faked green.

0receipts this session
chain verify
generating…signing key
null Jenergy — honestly unavailable

01 · SCREEN

Run the guardrail → emit a signed receipt

02 · RECEIPT

DSSE decision receipt (this browser signed it)

// screen something above — the signed envelope appears here

03 · VERIFY

Proof band — recomputed live, never asserted

WAITING
required fields present
WAITING
DSSE PAE SHA-256 recomputed = _pae_sha256
WAITING
ECDSA-P256 signature verifies (session public key)
WAITING
hash chain re-walk (prev ← digest) across session

What a PASS means: integrity + authorship within this session — nothing more. A receipt is a signed record of what was decided; it is NOT a proof the guardrail is correct and NOT zero-knowledge. Λ = Conjecture 1 — never green. A guardrail decision meters no inference energy, so energy.joules is honestly null.

04 · VERIFY ANYTHING

Paste a receipt

// verification report appears here

05 · SESSION KEY

Ephemeral public key

Generated in this page’s memory on load; the private key never leaves your browser and is gone when you close the tab. It proves integrity within the session — not long-term authorship.

generating…

06 · RULES

The deterministic rule set (mirrors szl-guardrail-receipt v0.1.0)

This tiny stdlib-grade rule set exists so the receipt pipeline runs end-to-end with zero downloads. It is not a production safety classifier — wrap Llama-Guard / NeMo / guardrails-ai via the Python package for real coverage. The canonical implementation is the Python package; this page is its browser edition with identical rules and receipt discipline.

⟨ 4TH WALL ⟩ You are reading rendered bytes. Don’t trust them — hash them:
canonical source: SZLHOLDINGS/guardrail-receipt · verify from outside: curl -sL https://huggingface.co/spaces/SZLHOLDINGS/guardrail-receipt/resolve/main/index.html | sha256sum
Integrity & origin of this page only — never the accuracy of anything on it. Hugging Face may inject one window.huggingface <script> into <head>, so the in-browser hash can differ from the source hash by exactly that banner. Doctrine v11.