CodeSampleX

Sample

verify pkg:npm/semver@7.8.5

sha256:6c91e31f00f1e490d1598d7eeb3642b52a8347d300cccddc19ac7cd5e83cb788

Publication state. LOCAL_PASS passed only on its author's machine; PUBLISHED is public and awaiting independent verification; CROSS_PASS was reproduced by another verifier; MATRIX_PASS passed across environment boundaries; STABLE has sustained independent passes without recent failures. Evidence strength. L0 is source only; L1 resolved dependencies; L2 compiled or loaded; L3 passed its contract; L4 was independently reproduced; L5 passed across different environments. MIT-0

Execution evidence

Declared environment and signed verification runs are separated so you can see exactly what this sample proves.

Evidence basis
Independent cross-verification
Verification receipts
1
Verification level
L4_CROSS_PASS
Declared environment node windows 11 x64 node javascript npm

Verification-run environments

Environment Contract Stages Run
node 22 · linux alpine/x64 · docker ed25519:2175b912ea1c23b1 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · node-typescript@1
2026-08-19

Case

HOW
Goal
verify pkg:npm/semver@7.8.5
Packages
Environment
node
Created
2026-08-19T00:00:38Z

Contract

  1. semver.valid validates version strings and rejects invalid inputs
  2. semver.clean normalizes and strips whitespace and prefix characters
  3. semver.satisfies evaluates version against comparator and caret/tilde ranges
  4. semver.compare determines correct ordering between versions
  5. semver.coerce extracts semantic versions from loose strings
  6. semver.inc increments version numbers across release types

Files

  • PROMPT.md
  • csx.json
  • index.js
  • package-lock.json
  • package.json
  • spec.json
  • test/contract.js

Download the source artifact (tar.gz)

Origin Seeder

anonymous