Evidence you can verify yourself.
Every claim on this page resolves to a live endpoint, a package registry, or a public repository you can open right now. We deliberately do not claim customer traction, pilots, or revenue — only what is independently checkable. Quesen's thesis is deterministic authorization and independently recomputable evidence for consequential autonomous actions.
Live production engine
- Health & version: /health and /version report the current engine version and configuration.
- Deterministic decision: a high-risk input returns
SKIP/BLOCK with named conflict rules; the same input always yields the same verdict (no LLM in the scoring path).
- Recomputable receipt: every
/validate response embeds input_snapshot_hash (SHA-256 over the canonical request) and commit_sha (the exact ruleset commit), so any decision is replayable byte-for-byte offline.
- Secret-egress firewall: a secret POSTed to an untrusted destination returns
BLOCK (EGRESS_SECRET_UNTRUSTED); a benign public egress returns PASS.
Published, installable distribution
- Python + framework SDKs on PyPI (
quesen-sdk, quesen-langchain, quesen-crewai, quesen-autogen) and JavaScript/TypeScript on npm.
- Native MCP interface at /mcp (Streamable HTTP) and OpenAPI 3.1 at /openapi.json.
- Developer portal, spec and conformance fixtures: github.com/Shxnque/quesen.
Public standards & ecosystem engagement
Shinren security research — findings (rung-honest)
Evidence-first smart-contract and protocol security research, including niche VMs (Soroban/Rust), not only EVM. Every finding is filed responsibly and labelled at the rung actually reached along the evidence ladder: Observed, Reproduced, Runtime-confirmed, Reported, Remediated, Retested. A source-level observation is never presented as a runtime vulnerability unless a proof-of-concept executes it.
- Runtime-confirmed — Zenith-options/contracts #120: CRITICAL caller-supplied-authorizer vault drain in a Soroban (Rust) options vault; reproduced with a native cross-contract Soroban proof-of-concept (PoC pass), then reported. Source-level review only.
- Runtime-confirmed — veracindarella/votechain-contracts #92: governance vote-weight recycling defeats quorum (one 100-token stake drove 300 votes); elevated to a cargo-test PoC against the real contracts, remediation (snapshot-at-creation) posted.
- Merge-ready — Conrad-sudo/sh-protocol #1 / PR#2: per-key (target, selector) session-key scope via an owner-signed EIP-712 SessionGrant; merge-ready src/SessionGrantLib.sol verified against the real ERC-4337/7579 Execution[] path, forge test 9/9 pass on solc 0.8.33.
- Retested — CallistoSecurity #90 (ZINZ): ERC-20 pre-audit cleared an explicit evidence gate — solc-js recompile structurally matches the on-chain bytecode, interface enumerated (ERC-20 + Burnable, 0 privileged selectors), delivered with a reproducible verify.py. Honest verdict: VERIFIED CLEAN.
- Reported — open-trust-layer/protocol #35: on an invited external review of a frozen commit, found the in-tree security policy routes reviewers to closed trackers for a superseded review target — a source-binding/identity-drift defect; proposed a promotion-gate CI assertion.
- Reported — Resomnium/cellos #1: agent capability scope used an adversarially bypassable substring match and defaulted fail-open; proposed a typed, segment-exact, fail-closed matcher plus a recomputable AuditEntry.
Install Quesen
pip install quesen-sdk # Python
npm i quesen-sdk # JavaScript / TypeScript
pip install quesen-langchain # LangChain
pip install quesen-crewai # CrewAI
pip install quesen-autogen # AutoGen
Free sandbox key (no signup, no card): curl -X POST https://web-production-3df26.up.railway.app/sandbox/keys