← zambo.dev
Public receipt verification

Check a receipt.

Every receipt has a fingerprint. If anyone changes the receipt, the fingerprint no longer matches. A match does not prove the answer is right.

Advanced: check an offline receipt
Advanced: check an offline receipt
Advanced: check an offline receipt

Offline AER-1 receipt check

Paste a full MCP response or its raw result._receipt object. After this page loads, the checker makes no network request. It checks the draft-10 receipt schema and recomputes SHA-256 over the exact decoded canonical bytes. Signature and chain checks remain visibly unchecked unless a real verifier is available.

The byte-change button edits only the text in this browser. It does not send or store the changed receipt. A matching hash checks the recorded bytes, not whether an outside action happened.

Open your saved receipt

This fetches the public hosted profile. Its shape is documented separately from the raw AER-1 connection receipt schema.

Read hosted profile schema · Run the read-only demo · Use the local proxy

Advanced: check a multi-step job

Verify a workflow receipt

A workflow receipt commits to an ordered list of independently verifiable step receipts. Use the worked workflow example as the reference record. Every step must independently verify through its own receipt endpoint before the workflow root is meaningful.

Exact Merkle construction

  1. For each 1-based step, lowercase the 64-character receipt output-hash hex and remove its sha256: prefix. The leaf is SHA-256(UTF-8 bytes of decimal seq + ":" + hash hex).
  2. At each parent level, hash the raw 32-byte left node concatenated with the raw 32-byte right node: SHA-256(left bytes || right bytes).
  3. If a level has an odd number of nodes, duplicate its final node before pairing. Repeat until one root remains.

The example workflow is 42a3c2cf-2cdd-5b8a-aced-016e5a2fb634 and reports this root:

a4b2fcb4684cec481e4ece889ed15c7d9e47e58d9ba4fb02ea354c0cb2ca44c4

Fetch each step at /api/v2/receipt/<receipt-id>/verify. Recompute its SHA-256 commitment from the exact decoded bytes and compare the output hash with the ordered commitment shown by the workflow. Signature and chain checks are separate and remain unchecked unless independently verified.

A matching root proves the integrity and order of the listed commitments. It does not prove that the workflow succeeded in its goal, that a provider's data was true, or that an external side effect occurred.

Open the exact workflow example → · Read the receipt schema →

Verify agent receipt

Paste the receipt UUID in the form above. The public checks let you inspect the recorded result and integrity material without relying on an agent's summary.

Verify AI agent output

A valid receipt check means the saved record matches its commitment. It does not prove that the model's answer was correct or that an unobserved outside action succeeded. Review those claims separately.

For developers and agents

Zambo gives AI work a receipt you can check. For people: add Zambo to your AI app and ask for a job. These technical links are for developers and AI agents. One hosted MCP at https://zambo.dev/mcp. Check the proof for recorded tool calls (verify a receipt). Agents: 24-hour Day Pass, $0.99 USDC on Base via x402, not per call. People: Zambo Pass $29/mo or $290/yr; holder pass $19/mo for verified $ZAMBO holders.

Start here: For AI agents · Add Zambo · Check a receipt · Answers · Guides · What a receipt is · Open receipt format (draft) · All tools · Pricing · Day Pass: $0.99 · Agent Day Pass · Switch AIs without losing your work · Connect your AI · Founder · Source code
Brennan on X · Zambo on X