Field evidence · updated 2026-07-15

What survived contact with other projects

Pluribus is an evidence layer for agent context boundaries. The strongest support for that direction is not another document in this repository; it is a falsifiable boundary that an independent maintainer ships or protects in tests.

Evidence, not an adoption claim. This ledger separates maintainer-shipped outcomes, independently reviewed contributions, and directory distribution. They prove that specific boundary checks affected inspectable external systems. They do not prove Pluribus installs, active users, or runtime consumption.

Maintainer-shipped from a falsifier

MCP trace privacy · shipped and protected 2026-07-12

Local storage ≠ agent-visible replay

A synthetic canary showed that Observer returned raw historical tool arguments to the agent and created a world-readable database. The maintainer shipped metadata-only, session-scoped defaults, raw opt-in, pre-store redaction, and 0600 storage; then requested and merged the hermetic regression suite.

Fix and independent rerun · merged tests #12

Cross-agent continuity · released 2026-07-12

Prompt replay ≠ task continuity

A failover test asked whether backup agent B inspects work left by quota-limited agent A. Usher's maintainer turned that first external feedback into a default continuation guard, machine-readable marker, opt-out, end-to-end test, and tagged release in 37 minutes. The remaining boundary is explicit: warning delivered does not prove workspace inspected.

inspect v0.3.2 · next evidence rung #6

Independently reviewed contributions

Skill lifecycle · merged 2026-07-10

Portable skill-use evidence

skill-graveyard accepted a privacy-safe receipt that separates inventory from observed use, with CLI and test coverage.

Inspect merged PR #11 →

Runtime authority · merged 2026-07-08

Effective authority snapshots

halo-record accepted runtime authority snapshots and a follow-up that deduplicates unchanged evidence instead of pretending every observation is new.

Snapshot PR #4 · dedupe PR #5

Context freshness · merged 2026-07-04

Repository-map freshness

agent-context-economy accepted metadata that makes a generated repository map's staleness inspectable instead of treating existence as current authority.

Inspect merged PR #1 →

Mutation safety · merged 2026-07-01–03

Dry-run and rollback proof

mcpm accepted sync dry-run receipts followed by rollback snapshots, separating previewed intent from applied and recoverable state.

Dry-run PR #4 · rollback PR #6

Session continuity · merged 2026-06-25

Resume proof before edits

claude-handoff-revive accepted a pre-edit resume receipt so a handoff can be checked before a new session mutates the repository.

Inspect merged PR #2 →

Instruction integrity · merged 2026-06-23

Hidden instruction visibility

promptblock accepted hidden-comment indexes in warnings, making invisible instruction locations reviewable instead of reporting only a generic finding.

Inspect merged PR #16 →

Independent distribution

Observability directory · merged 2026-07-11

Safety Guardrails and Observability

An independent maintainer listed Pluribus in awesome-ai-agents-2026 under the observability category.

Inspect merged listing PR #148 →

Context-engineering directory · merged 2026-07-07

Context management tools

The context-engineering resource repository accepted Pluribus as a context-management tool.

Inspect merged listing PR #434 →

Gemini CLI directory · merged 2026-07-09

Cross-tool context sync

awesome-gemini-cli accepted the Pluribus listing, exposing the source-to-native-file workflow to Gemini CLI users.

Inspect merged listing PR #72 →

Agent Skill registry · accepted 2026-07-08; attribution merged 2026-07-15

Evidence attestation as a named skill

gaia-skill-tree accepted the privacy-safe evidence-attestation recipe into its named registry. After an unrelated staging branch contaminated the first attribution patch, the maintainer recreated it as a one-commit, one-file change with all checks green. This proves independent curation and accurate contribution provenance—not installs or runtime use.

Inspect the registered skill · clean attribution PR #1181

Try the boundary yourself

The browser demo shows the narrowest useful Pluribus workflow: one reviewed source, native agent-file previews, and hashes for what was generated. The receipt remains honest that generation does not prove a client loaded the output.

Run the 30-second context sync demo →

For the latest CLI release, use GitHub Releases. npm may lag during release windows.