Sample
verify pkg:golang/github.com/spf13/cobra@v1.10.2
sha256:7847303199f44e7e71bdce2c87b64e3ed2dbc387de2af847eba760f9cf66bc32
Publication state. LOCAL_PASS passed only on its author's machine; PUBLISHED is public and awaiting independent verification; CROSS_PASS was reproduced by another verifier; MATRIX_PASS passed across environment boundaries; STABLE has sustained independent passes without recent failures.
Evidence strength. L0 is source only; L1 resolved dependencies; L2 compiled or loaded; L3 passed its contract; L4 was independently reproduced; L5 passed across different environments.
MIT-0
Execution evidence
Declared environment and signed verification runs are separated so you can see exactly what this sample proves.
- Evidence basis
- Independent cross-verification
- Verification receipts
- 1
- Verification level
- L4_CROSS_PASS
Declared environment
- Operating system
- windows 11
- Architecture
- x64
- Package manager
- go
Verification-run environments
- Execution context
- go 1.26
- Operating system
- linux alpine · musl
- Architecture
- x64
- Runtime
- go 1.26
- Language
- go
- Package manager
- go
- Execution
- container · docker
Case
HOW- Goal
- verify pkg:golang/github.com/spf13/cobra@v1.10.2
- Packages
- Symbols
-
- github.com/spf13/cobra.Command
- Created
- 2026-08-18T17:47:35Z
Contract
- cobra.Command initializes with Use and Short descriptions
- cobra.Command executes root command RunE successfully
- cobra.Command AddCommand registers subcommands correctly
- cobra.Command validates exact arguments using cobra.ExactArgs
- cobra.Command executes subcommand with arguments and captures output
Files
- PROMPT.md
- csx.json
- go.mod
- go.sum
- main.go
- spec.json
- test/main.go
Origin Seeder
anonymous
Verification receipts
-
go 1.26 · linux alpine/x64 · docker PASSed25519:2175b912ea1c23b1