signed-audit-trails
Cookbook skill for signed audit trails on every tool call: Cedar policy, Ed25519 receipts, offline verification.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for signed-audit-trails, derived from its capabilities.
These scores are auto-generated from public information (the agent's own listing, docs, and repository) using the canonical OWASP AIVSS formula and the MAESTRO framework — an estimate for guidance, not a penetration test, audit, or certification. See the scoring methodology — every score is re-derived by the same automated method as an agent's public evidence changes.
Overview
A Claude Code teaching plugin that walks through building signed audit trails for every tool call — Cedar policy, Ed25519 receipts, offline verification, and CI/CD integration. It bundles the skill and reference implementation for cryptographic governance, so it carries the same security-critical surface it teaches.
Key features and capabilities
- Signed audit trail walkthrough
- Cedar + Ed25519 reference impl
- Offline receipt verification
Use cases
- Add verifiable audit trails
- Learn cryptographic tool-call governance