Enabling receipts
Pass asigningKeyPath / signing_key_path to init():
- TypeScript
- Python
crypto module — no extra dependencies needed.
Documentation Index
Fetch the complete documentation index at: /llms.txt
Use this file to discover all available pages before exploring further.
Tamper-evident audit trails for AI tool calls
signingKeyPath / signing_key_path to init():
init({
apiKey: "tap_abc123",
signingKeyPath: "./keys/private.pem",
});
mcp_tap.init(
api_key="tap_abc123",
signing_key_path="./keys/private.pem",
)
cryptography package:pip install mcp-tap[aarm]
crypto module — no extra dependencies needed.
| Field | Description |
|---|---|
output_hash | SHA-256 hash of the event’s output (canonical JSON) |
context_hash | SHA-256 hash chain linking events in sequence — hash(previous_hash + canonical(event)) |
signature | Ed25519 signature over the canonical event, with algorithm, key_id, and value (base64) |
openssl genpkey -algorithm Ed25519 -out private.pem
openssl pkey -in private.pem -pubout -out public.pem