← All packages
The record · v0.1.0 · Apache-2.0

@flashyos/frontdoor

Which lanes you open, what you ask, and what you owe

frontdoor/1 — a published door: which lanes an organisation opens, what it asks at each, and what it owes in return. Emitted per repository, validated across an estate, verified from the applicant's own domain.

npx @flashyos/frontdoornpm ↗source ↗

Why it exists

A published door: the lanes an organisation opens to strangers, what it asks at each one, and what it commits to in return. Emitted per repository, validated across an estate, and verified from the applicant’s own domain rather than from a form they filled in.

What it refuses to do
A promise with no rung is not a door. The spec is normative about how a verifier may fetch — https only, a timeout, a size cap — so a door cannot be proved by a redirect.

Use it

Verify a door from the outside
npx @flashyos/frontdoor-verify example.com

Installing it puts these commands on your path — read from the package’s own manifest, so this list cannot drift from what you actually get.

flashyos-frontdoor
flashyos-frontdoor-verify
flashyos-frontdoor-audit
flashyos-frontdoor-registry
flashyos-frontdoor-join
flashyos-frontdoor-surfaces

The licence

Apache-2.0, read from the package’s own manifest. Embed it in anything, including closed software — that is what makes a spec adoptable and a verifier worth running. FlashyOS’s server side is AGPL-3.0-only instead, and a test in the monorepo asserts the direction between them: AGPL code may consume this, this may never consume AGPL code.

Keep reading

Machine surfaces
Also in the record
@flashyos/directory