private brief prepared for Harness · not indexed · Harness is not a customer, and nothing here implies a partnership, endorsement, deployment, or agreement

AI spend is rising faster than teams can explain, attribute, and govern.

That is Harness's own finding. In State of AI in FinOps 2026, published July 29, 2026, Harness reports that spend is "climbing fast and broadly, across every category and provider at once, while the ownership, visibility, and governance structures needed to manage it haven't caught up." Harness is already the platform closing that gap: Cloud & AI Cost Management delivers unified spend visibility, attribution, governance, and optimization, wired into the engineering workflow rather than bolted beside it. This brief proposes one addition next to it. An independent signed receipt at the level of the individual run or unit of work, so a charge can be tied to the work that created it and the evidence still stands later. Every demo on this page runs in your browser, apart from the live workflow, which is labelled where it calls the Hive API. No prompt, source, secret, or artifact content ever crosses to Hive.

Attribution that carries its own proofA receipt binds one run to the request that caused it and to the cost basis reported for it, signed at the moment it happened. Tracing a charge stops being a reconstruction exercise.
Evidence that outlives the viewA dashboard is computed from data a platform holds today. A receipt re-verifies offline against a published key, months later, with no account and no call back to Hive.
Additive, and removableThe proof step is fail open and sits outside the critical path. If Hive is unavailable or removed entirely, Harness keeps operating and receipts already issued stay verifiable.

The proof is in the provenance. It does not judge.

Harness's own research · every figure below is Harness's, with the first-party source beside it

The gap Harness measured. In Harness's numbers.

Harness surveyed 700 engineering leaders and practitioners across five countries in May and June 2026 and published the result on July 29, 2026. These are Harness's figures, not Hive's. Hive draws no conclusion about Harness beyond what the report itself states, and readers should re-verify the report before any external use.

72%hit an unexpected AI cost spike or surprise bill in the past 12 months
52%report no clear AI cost owner
79%need a full day or longer to trace a spike
26%of AI spend estimated wasted
26%have a robust way to measure AI business value
All five figures above are published by Harness in State of AI in FinOps 2026: AI Spend: Rising Fast & Running Blind, July 29, 2026, alongside the finding that 67% of organizations now spend over $250,000 per month on AI and 20% spend over $1 million.
Writing about the organizations already past $1 million per month, Harness puts it plainly: "At that scale, AI isn't a tool cost anymore, it's a capital decision, which deserves the same governance and attribution discipline it took the industry a decade to build for cloud." On the cause, Harness adds: "The problem is a lack of visibility, not a misalignment of intent."

Read together, the two describe a visibility and attribution problem rather than an intent problem. Teams want to answer where a charge came from and whether the work behind it was worth the money. The awkward part is that the answer has to keep holding later, in front of finance, an auditor, a procurement review, or a customer asking why a bill moved two quarters ago.

two different jobs · both needed · neither replaces the other

Dashboards see and manage the spend. Receipts prove what created it.

Harness Cloud & AI Cost Management already gives teams one place to see spend across every AI provider and managed service, token and inference visibility by agent, model, and team, full spend attribution, anomaly flagging before the invoice lands, and budgets at the agent, team, or business unit level. That is the operating layer and it belongs exactly where Harness put it. A receipt is doing a different job, in a different tense.

What a dashboard is forSeeing and managing spend as it happens. Grouping it by business context, spotting a spike, setting a budget, and acting on it while the money is still in motion. This is present tense work and Harness does it well.
What a receipt is forProving which work created a charge, after the fact, to someone who was not there. It is signed when the run happens, it names the basis of every value it carries, and it can be checked without trusting the party that issued it.
Why the pairing holdsThe dashboard tells you the number. The receipt is what you hand over when someone asks you to substantiate it. An audit, a procurement review, a renewal negotiation, or a billing dispute all ask the second question, not the first.

Nothing here suggests a platform's own reporting is wrong. The point is narrower and more practical. A figure computed inside a system is a statement by that system, and there are rooms where a party wants evidence that does not depend on trusting the party presenting it. A signed receipt is that evidence, and it is additive to the number the dashboard already shows.

where a signed receipt attaches · every surface named below is one Harness publicly documents

Six Harness surfaces. One receipt rail.

The receipt does not change how any of these surfaces work and does not sit in front of them. It attaches beside the surface and records what happened, so the result stays checkable after the window closes. Source, prompts, secrets, artifacts, and findings stay inside the Harness and customer boundary throughout.

Cloud & AI Cost Management

Attribution that carries its own proof

Perspectives group resources by what matters to the business, Cost Categories attribute data across sources to business contexts, and AI Cost Management traces spend to the agent, session, workflow, team, and business unit driving it. A receipt adds a signed record for the individual run, so a line inside a Perspective can be tied to the specific request that produced it.

Binds run identity and reported cost basis · never the prompt words or the response.
Engineering workflows · pipelines

Cost evidence inside the pipeline

Harness CI builds and pushes artifacts, Harness CD runs canary and rollout strategies with AI Verify, and Harness AI agents run inside pipelines from commit to production. A receipt attaches at the stage, binding which step ran, under which approval, and what it consumed, so the spend record and the delivery record are the same record.

One signed lineage per run · the payload and the artifact bytes never cross.
Policy and governance

A signed record that the gate ran

Harness applies OPA policy-as-code on save and on run, and Asset Governance manages cloud environment and spend through governance rules and budgets. Harness reports 73% of organizations have AI cost policies while 47% fully enforce them. A receipt records which policy evaluated, on what, and the result, producing portable evidence a control reviewer can check.

A signed record that a policy was checked is not a statement of legal or regulatory compliance.
Anomaly investigation

From a flagged spike to the work behind it

Anomaly Detection identifies unusual or unexpected changes in cloud service expenses, and AI Cost Management flags spend spikes before they hit the invoice. Harness reports 79% of organizations need a full day or longer to trace a spike to its source. The receipts covering that window let an investigator narrow to the runs whose signed cost basis matches the movement.

Narrows the search set · it does not diagnose the cause, and it does not replace the investigation.
Executive and audit reporting

Numbers that stay checkable after the quarter

BI Dashboards turn cloud data into modeled and visualized metrics, and Perspectives create tailored views for engineering, finance, or leadership. A reported figure backed by receipts can be re-verified offline against the signed set underneath it, by a reviewer who never had access to the platform that produced it.

Verification is free, works offline against the Hive public key, and requires no account.
Everyday requests · not only agents

Human-composed work counts too

A large share of AI spend is ordinary requests a person wrote, from an IDE, a support console, an internal tool, or a notebook. The rail treats a human-composed request and an autonomous agent step the same way, because the cost lands in the same place and the attribution question is identical. Nothing here requires an agent framework to be present.

Same receipt shape for a person's request and a pipeline step.

Every Harness capability named above is public and first-party source-linked in the evidence section below, current as of July 2026, and should be re-verified before external use. This is a proposed architecture, not a description of anything Harness has deployed.

the animated picture · illustration of how the service works, not Harness data

Prompts, code, and artifacts stay. The signed proof crosses.

Left of the line is everything inside the Harness and customer boundary. Right of the line is a finance reviewer, an auditor, a customer, or a downstream team. Watch what actually crosses.

Inside the Harness and customer boundaryPrompt and response content, source code, build artifacts, deployment payloads, pipeline secrets, and security findings stay here. They bounce off the line. They never cross.
Only the signed proof crossesA SHA-256 fingerprint, a run identifier, a reported cost basis, a policy ID, a timestamp, and a hybrid signature travel to the reviewer. Enough to verify the run. Nothing that reveals what was asked, what was answered, or what was built.

Every square that crosses is a receipt, not a copy. The count of prompt, code, secret, and artifact bytes that crossed is always zero. That is the whole design.

your surfaces · your numbers · arithmetic tool, not a forecast, a quote, or a price

Move the sliders. Watch the moved content bytes stay zero.

Sliders are yours to set. This is arithmetic on numbers you enter, not a forecast, a quote, or a claim about Harness's real volumes.

Build and deploy receipts / mo·
Gate and security receipts / mo·
Flag and AI-run receipts / mo·
Total signed evidence events / mo·
Proof bytes on the wire / mo
~96 bytes per receipt, batched
·
Prompt, code, secret, and artifact bytes moved to Hive0 bytes

Whatever you put in those sliders, the last number is always zero. Proof bytes scale with the number of runs; content bytes moved do not scale at all.

offline verifier · runs entirely in this tab · no telemetry after page load

Verify a Harness-shaped receipt. Right here. No install.

This widget builds a real signed receipt for a Harness deployment action, verifies it in your browser, lets you tamper with a byte and watch the check fail, re-verifies from pasted JSON, and re-checks a published 5,000-frame routine soak. The signing engine is bundled and served from this same domain. Open your network tab: after load, it makes zero outbound calls except the two same-origin JSON fetches it names.

In-browser · offline The offline verifier never leaves this page except to fetch its own sample and bench file from this domain.

Widget idle. Click 1 · Build & verify a Harness receipt to load the engine and run the first check. Everything runs in this tab.

Every click prints the recomputed hash next to the stored hash, one line per layer. A changed byte reads FAIL in the same output; a clean receipt reads PASS. Success is labelled, never color alone. There is no server round-trip. The same engine ships as an offline command-line kit that is byte-identical to what runs here.

How the receipt frame is put together

Four mechanics inside the InkFrame v1 receipt frame, exercised by the verifier above. These are frame mechanics. They are not the four filed primitive families, which are set out further down this page.

Frame mechanic A
Proof pre-fillThe receipt is attached before the step completes, not written up after. Nothing waits on Hive to render it.
Frame mechanic B
Sealed by contentA tamper-evident record. Swap an artifact digest or change a canary weight and the check fails, as the simulator below shows.
Frame mechanic C
Disclosure-free replayReconstruct the route a run took without moving the prompt, the source code, the artifact, or the payload behind it.
Frame mechanic D
Arrival countersignA gateway countersignature, so what arrived is what was cleared, on the journey the receipt actually took.
in-page pipeline simulator · deterministic, in-browser · no Harness account, no install

Run a Harness-shaped pipeline. Each stage signed.

This is a self-contained simulator that behaves like a small Harness delivery pipeline: build, test and security scan, approval and policy gate, deploy and canary, verify and rollback. Each stage produces a visible signed proof state, and the whole run folds into a final evidence bundle you can export. It runs deterministically in this tab and calls no Harness API, so nothing depends on an account or a login.

Stage 1
Build
idle
Stage 2
Test & Scan
idle
Stage 3
Policy Gate
idle
Stage 4
Deploy / Canary
idle
Stage 5
Verify / Rollback
idle

In-browser · deterministic The simulator runs a fixed, Harness-shaped pipeline locally. Source, artifacts, and deployment payloads are hashed into each stage receipt; the payloads themselves never cross to Hive.

Idle. Click Run the pipeline & sign each stage to execute the five stages in order, sign a proof state for each, and fold the run into a final signed evidence bundle. Each stage prints its proof state as it completes.

The two tamper buttons show the two failure modes that matter in delivery: an artifact swapped after the gate, and a canary weight that breaks a stated policy. In both cases the mismatch is caught visibly and the signed evidence refuses to line up. Success and failure are labelled PASS or FAIL, never color alone.

live workflow · this button makes real calls to the hive api · not the offline widgets above

Run the Harness proof workflow. End to end, live.

This is different from the offline verifier and simulator by design. It drives the real Hive receipt primitives in a Harness-shaped sequence: relay a signed deployment event, group it into a proof vector (R3Pv), run a Protected Flow assessment under a strict delivery policy pack, and export a signed evidence bundle. No account, no key, no payment beyond the calls you trigger. No deployment payload moves and Hive never calls a Harness API.

1signed relay event
R3Pvgrouped proof vector
assessprotected flow decision
exportsigned evidence bundle

Network state: unknown This leaves your browser and hits receipts.thehiveryiq.com. If the call is blocked by CORS or offline, the widget runs a truthful local cryptographic fallback and labels it clearly. It does not fake a live success.

Open the R3Pv health route
Idle. Click Run the live proof workflow to relay a Harness deployment event, group it into an R3Pv vector, assess it under the strict_delivery policy pack, and export a signed evidence bundle. Each step prints as it returns.

The Harness-shaped payload carries a deployment event kind and strategy only, never source code or a secret. Curl the same sequence yourself:

# 1 · relay a signed Harness deployment event (no source, no secret) curl -sS -X POST https://receipts.thehiveryiq.com/v1/receipt-relay/event \ -H 'Content-Type: application/json' \ -d '{"action":"deployment","external_system":"harness", "actor":{"did":"did:example:cd-pipeline"}, "payload":{"kind":"deploy_canary","strategy":"canary","canary_weight":20}, "healing_state":"pre_broadcast_stoppable"}' # 2 · group the receipt, derive the R3Pv proof vector # 3 · POST /v1/protected-flow/assess under policy_pack=strict_delivery # 4 · GET /v1/protected-flow/evidence/{group_id}/export
four primitive families filed July 31, 2026 · patent pending · a filing is not a granted patent

Four filed primitives. One receipt.

These are the four families Hive filed on July 31, 2026, each defined on Hive Proof Architecture and used here exactly as defined there. All four apply to an autonomous agent step and to an ordinary request a person composed, without distinction between them.

Filed · Foretoken™
Commit before the content leavesForetoken™ commits to a run before or at the same moment the first streamed content leaves the model. It carries an incremental digest as content flows, then seals a terminal attestation tied back to that opening commitment. The seal cannot be produced after the fact.
Filed · Stipryn™
Proof level fixed before transmissionStipryn™ fixes the required proof level before transmission, while the party bearing the consequence still controls the request. Stipryn™ does not change the request. It analyzes and binds. It does not compose, rewrite, or improve anything.
Filed · MSDD
Two values, kept apartMulti-Source Divergence Detection (MSDD) binds what a provider asserts and what is separately observed into the same structure, without merging them into a single reconciled value. It does not merge the two and it does not decide which is true.
Filed · BPA
The budget and what happenedBonded Performance Attestation (BPA) binds a declared performance budget and the performance that actually occurred to the same response content. BPA does not make a system fast. It makes the speed claim checkable and attributable.

For a spend conversation, the pairing that does the work is MSDD and BPA. A provider's reported token count, duration, or unit cost is carried as a provider assertion and labeled as such, sitting beside what Hive separately observes at the delivery boundary, in one structure, with neither value overwriting the other. Foretoken™ makes the run itself impossible to reconstruct favorably afterwards, and Stipryn™ lets the team that will carry the cost decide how much proof a class of request needs before it is sent, without touching the request.

reference build passed its integrity gate · long-duration signed soaks run as routine · filed July 31, 2026 · patent pending
the evidence boundary · stated plainly, because overstating it is the fastest way to lose the argument

What is asserted. What is separately observed. What anyone can check.

Hive is not omniscient about a system it does not run. Every value inside a receipt carries the basis it came from, and the three bases stay separate on purpose. Nothing in the structure quietly promotes one into the other.

Platform or provider assertionReported token counts, model identity, unit prices, durations, and cost allocations originate with the platform or the model provider. Hive carries them as assertions, labeled as assertions, and does not verify their internal truth.
What Hive separately observesDelivery and instrumentation behavior at the boundary Hive actually sits on: when the commitment was made, when content began arriving, timing, ordering, and the digests of what crossed. This is narrow on purpose.
What a third party can verifyThe internal consistency of the signed structure, whether a terminal attestation ties back to its pre-commitment, whether any byte changed after signing, and which basis each value carries. Offline, against a published key.

The things Hive does not do are worth saying out loud. Hive does not read prompt, response, source, or artifact content; each is recorded as a one-way SHA-256 fingerprint. Hive cannot see inside the Harness platform and makes no claim to. Hive does not judge whether an answer was good, whether a spend was justified, or whether a control satisfies a regulation. A signed record that a policy was checked is a record, not a compliance statement. What Hive offers is a structure a party can check without having to trust the party that produced it.

additive by design · outside the critical path · removable without consequence

Fail open. Remove it and nothing breaks.

The proof step is fail open by default. If the pre-commitment or the signing step is slow, degraded, or unavailable, it does not hold the run, the request, the build, the deployment, or the response. Harness continues operating exactly as it does today, and the work completes whether or not a receipt was written for it.

Not in the critical pathHive sits beside the surface, not in front of it. There is no request Hive has to approve before it proceeds and no gate that stops when Hive is down.
Nothing to migrate on the way outRemoving Hive means removing an attachment. No data has to be extracted from Hive, because prompts, source, secrets, and artifacts were never sent there in the first place.
Receipts outlive the arrangementReceipts already issued stay independently verifiable against the published public key, offline, with no account and no call back to Hive. Evidence that expires when a vendor relationship ends is not evidence.

This is the property that makes a POC cheap to try and cheap to abandon. The downside of switching it on is bounded, and the artifacts produced during the trial keep their value even if the answer is no.

start with the rail that runs today · grow into the broader proof architecture

Running now. Expansion offerings.

Organized around the same six surfaces the map above names. Everything under Running now is live today, and the verifier, simulator, and live workflow on this page exercise it. Everything under Expansion offerings is a surface Hive could stand up with Harness, not a service running yet. The distinction is kept explicit so nothing on this page reads as further along than it is.

Cloud & AI Cost Management

Per-run attribution receipts

Running nowReceipt Relay · InkFrame v1 · Proof Pre-Fill · content-sealed run and cost-basis roots
Expansion offeringsMSDD on reported versus separately observed usage · Perspective-linked receipt sets · Cost Category attribution registry
Engineering workflows · pipelines

Pipeline and deployment lineage

Running nowR3Pv proof vector · Protected Flow assess · signed evidence export
Expansion offeringsBuild and deploy step receipt hooks · AI Verify result receipts · rollback-lineage bundles
Policy and governance

Gate and governance receipts

Running nowProtected Flow decision classes · policy-pack assessment · healing-state vector
Expansion offeringsOPA policy-evaluation receipt hooks · Asset Governance rule evidence · portable control bundles
Anomaly investigation

Spike-window receipt sets

Running nowInkFrame Non-Mutation · Disclosure-Free Replay · content-sealed state roots
Expansion offeringsTime-window receipt retrieval · BPA on declared versus actual duration · run-set narrowing exports
Executive and audit reporting

Re-verifiable reported figures

Running nowArrival Countersignature · Evidence Export · offline verification against the published key
Expansion offeringsReporting-period evidence bundles · OriginProof · PPR · SRPR
Everyday requests · not only agents

Receipts for human and automated work

Running nowCarnac™ · CarnacPrompt™ · Carnac Gateway™ · Carnac Live Ink™ · typed cue edges
Expansion offeringsForetoken™ on streamed runs · Stipryn™ proof-level binding per request class · Protected Flow Fleets
the fuller offer · buyer-readable primitive cross-reference · no need to leave this page

Every Hive primitive, mapped to a Harness surface.

The InkFrame v1 receipt frame is the fastest path in. Hive Proof Architecture is broader than that. This is the whole map, kept on this page so nothing needs to be chased down elsewhere: each primitive, the Harness surface it fits, what it does now, and what it could do next.

Open the full primitive cross-reference
Hive primitive × Harness surface · running now and expansion
Hive primitiveHarness surfaceStateWhat it does
Foretoken™Cloud & AI Cost Management · everyday requestsFiled · expansionCommits to a run before or at the same moment the first streamed content leaves the model, carries an incremental digest as content flows, then seals a terminal attestation tied back to that opening commitment. Filed July 31, 2026.
Stipryn™Policy and governance · everyday requestsFiled · expansionFixes the required proof level before transmission, while the party bearing the consequence still controls the request. It analyzes and binds; it does not change the request. Filed July 31, 2026.
MSDDCloud & AI Cost Management · reportingFiled · expansionBinds what a provider asserts and what is separately observed into the same structure, without merging them into a single reconciled value. Filed July 31, 2026.
BPAAnomaly investigation · reportingFiled · expansionBinds a declared performance budget and the performance that actually occurred to the same response content. Filed July 31, 2026.
InkFrame v1All surfacesRunning nowThe signed receipt frame: content-addressed roots plus a hybrid Ed25519 + ML-DSA-65 signature. The verifier above builds and checks one.
Proof Pre-FillCost management · pipelinesRunning nowFrame mechanic A. The receipt is attached at the moment of the step, so it adds no delay to a run, a build, or a deploy.
InkFrame Non-MutationAnomaly investigation · pipelinesRunning nowFrame mechanic B. One changed byte fails the check. This is the tamper test in the verifier and the simulator.
Disclosure-Free ReplayReporting · anomaly investigationRunning nowFrame mechanic C. Reconstruct the route a run took from fingerprints alone, with no prompt, source code, or artifact.
Arrival CountersignaturePolicy and governance · reportingRunning nowFrame mechanic D. The gateway countersigns on arrival, so what arrived is what was cleared.
Receipt RelayCost management · pipelinesRunning nowSigns an event into a portable receipt. Step 1 of the live workflow above.
R3Pv proof vectorPipelines · policy and governanceRunning nowGroups signed receipts into one signed vector: verification, policy, healing, routing, and permitted next action.
Protected FlowPolicy and governance · pipelinesRunning nowTurns the vector into a signed decision (permit, hold, recover, escalate) under a policy pack, with a meter quote. No payload moves.
Evidence ExportExecutive and audit reportingRunning nowBundles the vector, assessment, receipts, and pubkeys into a signed bundle a reviewer re-verifies offline.
Carnac™Everyday requests · pipelinesRunning nowSizes how much proof an action deserves. It does not judge.
CarnacPrompt™Everyday requestsRunning nowFingerprints the request as a one-way SHA-256, never the words.
Carnac Gateway™Everyday requests · pipelinesRunning nowThe gateway that countersigns request and pipeline traffic on arrival.
Carnac Live Ink™Everyday requests · pipelinesRunning nowLive-streamed proof ink for an in-progress run, sealed as it runs.
SmartAgent route proofPipelines · everyday requestsExpansionProof for multi-step behavior across a workflow route.
Protected Flow FleetsPipelines · cost managementExpansionFleet-scale protected-flow decisions across many concurrent runs.
AFiR-Stream™Cloud & AI Cost ManagementExpansionStreaming receipt proof for high-volume run batches.
OriginProofPipelines · reportingExpansionOrigin attestation for build artifacts, SBOMs, and security findings.
PPR · SRPRExecutive and audit reportingExpansionProvenance and settlement receipts for released artifacts.
Sovereign Receipt RegistryEnterprise · auditExpansionJurisdiction-held or customer-held receipt registry.
Provable MachinesPipelines · policy and governanceExpansionBuild-time control-execution receipts for pipeline runs.

Running now rows are exercised by the verifier, simulator, and live workflow on this page. Filed rows are the four primitive families filed July 31, 2026; patent pending, and a filing is not a granted patent. Expansion rows are options to weigh with counsel and with Harness's engineering, finance, and security functions; none of them is a live service today.

current source-linked evidence · first-party Harness sources · re-verify before external use

Every claim on this page points to a Harness source.

These are Harness's own words and docs, public as of July 2026. Hive draws no conclusion about Harness beyond what these state, and does not imply Harness is a customer, partner, or endorser. Every figure quoted anywhere on this page comes from one of the first two sources below.

State of AI in FinOps 2026: AI Spend: Rising Fast & Running Blind, July 29, 2026. Survey of 700 engineering leaders and practitioners across five countries, fielded May and June 2026. Source of the 72%, 52%, 79%, 26%, 26%, 73%, 47%, 67%, and 20% figures used on this page, and of the sentence about ownership, visibility, and governance structures not having caught up.
Cloud asked what it cost. AI is asking what it's worth. Harness's companion post, source of "At that scale, AI isn't a tool cost anymore, it's a capital decision" and "The problem is a lack of visibility, not a misalignment of intent".
Harness Cloud & AI Cost Management provides one place to see spend across every AI provider and managed service, token and inference visibility by agent, model, and team, full spend attribution to the agent, session, workflow, team, and business unit, spend spikes flagged before they hit the invoice, and budgets at the agent, team, or business unit level.
Perspectives group resources by what matters most to the business and create tailored views for engineering, finance, or leadership. Cost Categories take data across multiple sources and attribute it to business contexts. Budgets set custom limits with real-time alerts.
Anomaly Detection identifies unusual or unexpected changes in cloud service expenses. Asset Governance manages the cloud environment and cloud spend using governance rules and budgets. BI Dashboards turn cloud data into actionable insights and model, analyze, and visualize key metrics.
Harness CI builds and tests code, manages dependencies, and uploads artifacts, with CI Intelligence features like Test Intelligence and Cache Intelligence.
Build and Push steps build the codebase and push the resulting artifact to a container registry or repo in a CI pipeline.
Harness CD runs canary and rollout strategies, pairs verification with canary phases via AI Verify, and performs automatic rollback if verification fails.
Harness applies OPA policy-as-code on save and on run, for rules such as "production deployments require at least one approval step" and "canary weight must not exceed 25% in the first phase".
Security Testing Orchestration covers application and API discovery through AI-powered threat prevention, with agentic workflows from build to post-deployment. Named by the pipeline simulator on this page.
Harness Agents are autonomous AI agents that run inside pipelines, building, deploying, testing, remediating, and optimizing the SDLC from commit to production.

Pick one surface. Hive runs the POC.

Choose a single surface from the map above and name it. Per-run attribution inside Cloud & AI Cost Management is the shortest path, and one pipeline or one anomaly investigation works just as well. Hive builds the evidence layer for that one surface and publishes the verification path. Harness stays the source and custodian of everything inside its own boundary throughout, the proof step stays fail open, and the whole thing can be removed without leaving anything behind.

This is a private prospect artifact from Hive Civilization Inc. Harness is not a customer. Nothing here implies a partnership, endorsement, deployment, agreement, or customer relationship. Foretoken™, Stipryn™, Multi-Source Divergence Detection, and Bonded Performance Attestation are patent pending, filed July 31, 2026. A filing is not a granted patent. Harness product facts and report figures referenced on this page are public, first-party, and current as of July 2026, and should be re-verified before external use.

new in the canon · runnable on this page

Two newer receipts that fit AI spend work

Both of these are newer than the rail described above. They are code complete and not yet deployed, and the runs below say so on their face. They are here because a Harness reviewer looking at spend attribution and budget policy will want them next.

causal.path · Code complete, not deployed

Link one spike back to the run that caused it

A cost spike almost never has one receipt. It has a chain: a request came in, a model was picked, a build ran, an artifact shipped. This receipt takes a list of receipts you already hold and proves the chain is continuous, output digest to input digest, step by step, from a named origin to a named terminus. If any link is missing or swapped, the check fails and names the index where it broke. You get one artifact that says the whole path holds, instead of a folder of receipts a reviewer has to trust you assembled honestly.

What it does not do. It does not say the spend figure is correct, does not say any step was the right thing to do, and does not reveal any prompt, source, artifact, or payload. It proves only that the digests line up in the order claimed.

POST /verify/causal-path · case pass, a clean record

Nothing has run yet. Click Run it and the answer below comes back from the verifier, not from this page.

POST /verify/causal-path · case broken, the chain is broken

Nothing has run yet. Click Run it and the answer below comes back from the verifier, not from this page.

parametric.trigger · Code complete, not deployed

Commit the budget rule before the window opens

A budget rule written after the overspend is an argument. A budget rule committed before the window opens is evidence. This receipt binds a threshold to a time, then checks the ordering: the policy was committed, then the budget was declared, then the measurement window opened. When the measured value crosses the line, the receipt records that it did and that the rule predated the measurement. When it does not cross, that is recorded too. Both outcomes are valid receipts.

What it does not do. It does not measure anything itself, does not decide who pays, and does not enforce a stop. It records that a specific rule existed before the thing it judged, and what the comparison came out to.

POST /verify/parametric-trigger · case pass, a clean record

Nothing has run yet. Click Run it and the answer below comes back from the verifier, not from this page.

POST /verify/parametric-trigger · case nottriggered, the condition was not met

Nothing has run yet. Click Run it and the answer below comes back from the verifier, not from this page.

POST /verify/parametric-trigger · case fail, a forged record

Nothing has run yet. Click Run it and the answer below comes back from the verifier, not from this page.

Every run above posts a verified request body from this domain to the open verify route and prints what came back. The example receipts are signed with published example keys, so verify reports key_trust example_registry. That is on purpose. Nothing on this page is a production issuance, a customer record, or an endorsement. Patent Pending.