Prove every AI decision with a signed receipt — classify inbound messages, seal restraint when blocked, stranger verify in browser.
▶ Carrier bind-gate demo (~10s) · Agent commit gate (~15s) · no API key · Insurance wedge
Operator rails: Payout gate · MCP fuse-required · Instant · $49
Official clients — seal() in 3 lines, prove_restraint() one-call, bind-payment twin, LangChain callback. Stripe parallel: Checkout → receipt URL.
Python quickstart
from velaru import seal
receipt = seal("your message", domain="hiring")
print(receipt.verify_url) # Stripe parallel: receipt URL
print(receipt.permalink)
Node.js quickstart (Node 18+)
const { seal } = require('velaru-sdk')
const receipt = await seal('your message', { domain: 'hiring' })
console.log(receipt.verify_url)
Webhooks: v.on_crisis(url) · Idempotency: Idempotency-Key header on POST · Public demo key: velaru_public_demo (10 req/min, sandbox log)
Drop-in LangChain callback. Signs user prompts and model outputs; returns verify URLs per turn.
pip install velaru-sdk langchain-core langchain-openai
from langchain_openai import ChatOpenAI
from velaru import Velaru, VelaruCallbackHandler
handler = VelaruCallbackHandler(Velaru(api_key="YOUR_KEY"), domain="insurance")
llm = ChatOpenAI(model="gpt-4o-mini", callbacks=[handler])
llm.invoke("Propose binding policy DEMO-PAS-2026-001")
print(handler.audit_summary()["input_verify_url"])
Fuse-required agent lane — tools fail closed when fuse is DEAD. Full dev path: /integrate/mcp · config: mcp-cursor-config.json
pip install "velaru-sdk[mcp]" # Cursor: download JSON from /integrate/mcp → merge into MCP settings velaru-mcp # Tools: velaru_seal, velaru_prove_restraint, velaru_bind_payment, velaru_fuse_hop, # velaru_fuse_status, velaru_hero_demo, velaru_warm
Map Portkey default.webhook → Velaru hop. DEAD fuse returns verdict: false + stranger verify_url. Full adapter recipe:
/docs/portkey-fuse-webhook.md
Sandbox keys: prefix velaru_sandbox_* (isolated log). Public try-it key below — 10 req/min. Structured errors with request_id. Docs at /docs.
curl https://velaru.xyz/api/v1/me -H "X-API-Key: velaru_public_demo"
curl -X POST https://velaru.xyz/api/v1/classify \
-H "X-API-Key: velaru_public_demo" \
-H "Content-Type: application/json" \
-d '{"message":"Bind general liability policy","domain":"insurance","session_id":"try-1"}'
curl https://velaru.xyz/openapi.json
curl https://velaru.xyz/status.json
Call classify on every user turn. Attach your API key in production; the workspace UI works without one for testing.
If the model skips a turn, times out, or refuses without a Velaru receipt — log cryptographic proof of monitored silence.
Each receipt includes entry_id, hash, and signature. Anyone can verify at /verify or via QR deep link. Anchored externally on GitHub.
After a VIOLATION block, issue a Counterfactual Receipt (CCR) proving the non-selected path. Fills the IETF policy-replay gap.
Register employer BYOK and vendor keys on the same session_id. Classify, then co-sign with both parties — verify shows Tri-Receipt complete.