Every run is evidence
Each step, policy decision and capability call goes into a hash-chained audit log inside an
evidence bundle. boruna evidence verify recomputes every hash and reports any
change.
Boruna runs AI and LLM workflows deterministically, under an explicit capability policy, and seals every run into a hash-chained evidence bundle. Anyone can verify the bundle offline, and any change to it is detected.
Each step, policy decision and capability call goes into a hash-chained audit log inside an
evidence bundle. boruna evidence verify recomputes every hash and reports any
change.
Approval gates pause a workflow until someone runs boruna workflow approve.
A calibrated confidence gate lets an answer skip review only when calibration data shows a
wrong answer would get through at most a set share of the time.
Workflow steps are written in .ax and run on a VM with no ambient randomness,
clock or I/O. Network, LLM and file access must be declared and allowed by policy, and their
results are recorded so a run can be replayed and checked.
boruna evidence report --framework eu-ai-act (or nist,
iso42001) verifies a bundle and maps what it contains to the obligations each part
helps meet. It is a technical mapping for your auditor, not a certificate of compliance.
Real output from boruna 3.5.0, captured when this page was built.
$ boruna workflow run examples/workflows/confidence_gated_review --policy allow-all --record
data_dir: runs
workflow 'confidence-gated-review' run: Completed
run_id: 9fc7168a51f1f54d
duration: 3ms
step 'publish': Completed (0ms)
step 'review': Completed (0ms)
step 'score': Completed (0ms)
evidence bundle: runs/evidence/9fc7168a51f1f54d
bundle_hash: b2e40c3df69a8417495ca5098daf491f78c853b03793be0555ff721a6bb5b2d0
audit_log_hash: cc92dd1f10a08b5a405f01cf258056466db50eed1ac6e350d4ddabef8468856f
files: 6
$ boruna evidence verify runs/evidence/9fc7168a51f1f54d
evidence bundle is VALID
Linux and macOS:
curl -fsSL https://raw.githubusercontent.com/escapeboy/boruna/master/install.sh | sh
Windows (PowerShell):
irm https://raw.githubusercontent.com/escapeboy/boruna/master/install.ps1 | iex
Both scripts check the download against the release's SHA256SUMS before
installing. Builds for Linux (x86_64, arm64), macOS (Apple Silicon, Intel) and Windows (x64,
Arm), each tested natively in CI. Manual
download and platform table →
.ax language — small,
statically typed and deterministic..ax from Claude Code, Cursor and other agents.llms.txt and llms-full.txt
— the language and tooling in a form a model can read in one go.