The agent economy, on the record.
Your software acts for you millions of times a day — buying, filing, negotiating, deciding. BlueFox writes each of those actions down as a signed receipt anyone can verify — no account, no permission from us — so when someone asks what your software did, you hand them the receipt, not your word.
Verification is always free.
A receipt you hold remains verifiable against our published keys after our stored copy is purged.
npx bluefox-verify-receipt specimen-receipt.jsonBuilt for the people who get asked.
- Engineering leads who run agents in production and will be asked, months from now, exactly what those agents did.
- Compliance, risk and audit who need evidence they did not have to take on trust — verifiable by them, without an account.
- Counsel and procurement who need a record that holds when the two sides of a question disagree.
If your software acts on someone's behalf, the question is coming. This is what you answer it with.
Show someone what your software did in March.
Someone will ask. An auditor, a client, a regulator, the other side of a dispute — and what they want is not your word for it, or ours. They want the thing itself: what your software did, when it did it, signed under a key they can look up, and checkable by them without an account and without asking you.
That is what a receipt is here. One action, written down, in a form the person asking can check for themselves.
Your side of the story, signed.
When your agent acts, BlueFox mints a receipt: what happened, when, under which key — verifiable by anyone you hand it to, with no account and no permission from us. Months later, when someone asks, you retrieve. We keep the receipts. All of them.
How long we keep a copy depends on the receipt's retention tier; how long it stays verifiable does not — a receipt you hold keeps verifying against our published keys after our stored copy is purged.
Every claim resolves to a receipt.
Models change. The record doesn't.
The models, tools, and services your agents depend on are observed continuously — measured, signed, and archived in a time-locked record. We write it down. All of it. When something material changes, you hear about it fast, by rule. When you need last March, it's simply there.
“Material” and “by rule” mean your rule: a watcher fires when a change matches the criteria you subscribed with — your thresholds, not our judgment — and the alert arrives with the signed evidence attached.
Start with one receipt. It's yours.
Your agent did something that matters. Mint a signed record of it in one call — verifiable by anyone, forever, whether or not they've heard of us.
Nothing changes quietly.
Tell us what you rely on — the models, the endpoints, the tools. We watch what you rely on, and when something material moves, you know: what changed, when, with the evidence attached.
What happened in March 2026? Exactly what happened.
Query the time-locked archive by rule and timeframe. You get a signed quote before you commit and signed evidence when you do. History that was captured when it happened.
Evidence ages well here.
Custody-grade retention for the receipts that will matter later: held, chained, timestamped, ready for the day of the question. Retrieval is a request.