CodeSampleX

Sample

verify pkg:golang/github.com/Microsoft/go-winio@v0.6.2

sha256:6769f344837bc1b4861c26e87796eb8fdef49ca6c1129f9b372dbde3371e0974

Publication state. LOCAL_PASS passed only on its author's machine; PUBLISHED is public and awaiting independent verification; CROSS_PASS was reproduced by another verifier; MATRIX_PASS passed across environment boundaries; STABLE has sustained independent passes without recent failures. Evidence strength. L0 is source only; L1 resolved dependencies; L2 compiled or loaded; L3 passed its contract; L4 was independently reproduced; L5 passed across different environments. MIT-0

Execution evidence

Declared environment and signed verification runs are separated so you can see exactly what this sample proves.

Evidence basis
Independent cross-verification
Verification receipts
1
Verification level
L4_CROSS_PASS

Declared environment

Operating system
windows 11
Architecture
x64
Package manager
go

Verification-run environments

go 1.26 · linux alpine/x64 · docker PASS
Execution context
go 1.26
Operating system
linux alpine · musl
Architecture
x64
Runtime
go 1.26
Language
go
Package manager
go
Execution
container · docker

CONTAINER_RUN · compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS · golang@1 · 2026-08-19

Case

HOW
Goal
verify pkg:golang/github.com/Microsoft/go-winio@v0.6.2
Packages
Created
2026-08-18T17:00:01Z

Contract

  1. guid.NewV4 creates a valid RFC 4122 version 4 GUID
  2. guid.FromString parses standard string format and roundtrips with String
  3. guid.NewV5 generates deterministic RFC 4122 version 5 GUID from namespace and name

Files

  • PROMPT.md
  • csx.json
  • go.mod
  • go.sum
  • spec.json
  • test/contract.go

Download the source artifact (tar.gz)

Origin Seeder

anonymous

Verification receipts

  • go 1.26 · linux alpine/x64 · docker PASS
    CONTAINER_RUN compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS golang@1
    ed25519:2175b912ea1c23b1