# Rootz Receipts > Rootz Receipts gives every piece of AI agent work its own paper trail: who authorized it, what it was asked, what it used and the controls in force, signed when the work happens and checkable by anyone, offline. NVIDIA's Open Agent Safety Platform (announced 28 September 2026) keeps AI agents contained with OpenShell, a free open-source deny-by-default sandbox, and Sentry, a hardware watchdog. That protects the operator. It does not give the people who rely on an agent's work any proof of how it was made. Rootz Receipts adds that proof. "Our agents run in OpenShell" is the new "our laptops are encrypted": what avoided liability was proof that the lost laptop was encrypted when it was lost. Rootz Receipts is a product of Rootz Corp, independent of NVIDIA, in a pilot program. Contact: steven@rootz.global. ## Pages - [Rootz Receipts](https://receipts.rootz.global/): NVIDIA's Open Agent Safety Platform keeps AI agents inside their limits. Rootz Receipts adds what the people who rely on agent work need: proof, attached to every result, of who authorized it, what it was asked, what it used and the controls in force. - [Rootz Receipts product](https://receipts.rootz.global/product): Every AI order signed. Every result carries its origin. Rootz Receipts gives work from AI agents on NVIDIA OpenShell an origin receipt anyone can check offline. Pilot program opening; design partners wanted. - [How Rootz Receipts works](https://receipts.rootz.global/how-it-works): For engineers: signed orders at OpenShell's gateway, byte commitments in supervisor middleware, an append-only session log with signed checkpoints, and an origin receipt anyone can verify offline. - [Rootz Receipts sample receipt](https://receipts.rootz.global/demo): An illustrative sample origin receipt you can change one thing at a time, and six scripted moments: refused installs, a changed byte, an offline check, the hidden egress, and a chain of receipts. - [Rootz Receipts for advisors](https://receipts.rootz.global/partners): For advisory and assurance firms: evidence your teams can test on every piece of a client's AI agent work, independently and without access to the client's systems. - [Why origin receipts](https://receipts.rootz.global/why): Why AI work needs proof of origin: the quality view, who asks for it, the objections we hear, and where Rootz Receipts sits among the layers you already have. - [Rootz Receipts pilot](https://receipts.rootz.global/pilot): The Rootz Receipts packages, from the free verifier to Enterprise and Cloud, and the 30-day pilot: one workflow, one policy, one counterparty. Design partners wanted. - [Contact Rootz Receipts](https://receipts.rootz.global/contact): Become an Rootz Receipts design partner. Tell us about the OpenShell workflow whose output leaves your building. ## Machine-readable - [AI Discovery manifest](https://receipts.rootz.global/.well-known/ai): signed, ai-discovery 1.2 - [Knowledge](https://receipts.rootz.global/.well-known/ai/knowledge), [Feed](https://receipts.rootz.global/.well-known/ai/feed), [Full content](https://receipts.rootz.global/.well-known/ai/content) - [Page hashes](https://receipts.rootz.global/ai/pages.json) - [Full text of the site](https://receipts.rootz.global/llms-full.txt) ## Video - [AI's Missing Paper Trail](https://youtu.be/LfgKLrRZ_tI) (2:13), captions at https://receipts.rootz.global/video/rootz-receipts-paper-trail.en.vtt ## Verify a real origin receipt - [Sample receipt and verifier](https://receipts.rootz.global/demo#real-receipt): https://receipts.rootz.global/samples/receipt.json ## Find a receipt from the answer alone - Resolver: GET https://receipts.rootz.global/.well-known/origin-receipts/sha256: - Answers recorded by Rootz Receipts carry a header naming it: `Origin-Receipt: ; by="response-sha256"; request="…"` - Keep only receipts whose response commitment matches your bytes, then verify each; the resolver is not trusted.