BootProof – Cryptographically prove any GitHub repo boots locally
Cryptographic boot attestations prove repos actually run, not just claim to.
The end of "Works on my machine." BootProof is a zero-trust supervisor that boots any repo and signs cryptographic proof of what actually happened. Built for the developers, and the AI agents, who can't take code on faith. No proof, no green check.
Self-verifying HTML receipts with ed25519 signatures prove your repo actually boots.
Backend developers, CI/CD engineers, AI agent developers
Reproducible Builds · GitHub Actions · Cosign
Cryptographic boot attestations prove repos actually run, not just claim to.
Solves a real WordPress hosting pain (no FTP for security.txt), but feature creep dilutes focus.
Payload signing for agents exists—MCP and schema validation already gate execution. Missing: evidence this prevents real exploits.
TLS for MCP agents with ECDSA passports and L0-L4 trust levels, zero dependencies.
Cryptographic chain-of-custody for AI code changes, SOC2 CC6/7/8 built in.
Ed25519 signed receipts solve AI agent accountability across org boundaries.