check_before_acting
Safety check before you install, run, pay, send, delete or connect. One answer: data.decision (allow, no_known_issues, unknown, warn, unverified_existence, require_human_approval, deny), data.enforce (proceed, proceed_with_care, require_human_approval, block), one headline, and reasons, scope (what was checked), evidence and gaps (what was not). The action matters: destructive, payment, send, credential and run-code actions always return require_human_approval (a deny still wins). allow needs a safety-grade check on file; a clean advisory read is no_known_issues. A package name its registry does not list returns unverified_existence (not a malware finding) with close real names. Alternatives (up to 3) are declared successors, fixed releases, or catalog picks that share the job; otherwise none. Compact by default (about 1 KB); pass verbose true for claims, warnings, the signed receipt and provenance. Example: {"target":"npm:express@4.21.2","action":"install","task":"web server"}.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| task | No | Optional: the job you need done (e.g. 'stream processing'). Used only to keep alternatives on topic. | |
| action | No | Alias for intended_action (the REST name). | |
| target | Yes | Required. A string (a resource id or an exact locator) or an object with kd_resource_id, url, or github_repo. resource_id is not accepted. | |
| verbose | No | Default false: a compact answer (about 1 KB). true returns the full record: claims, warnings, receipt, provenance. | |
| environment | No | Optional, coarse only: os (linux, macos, windows), arch (x64, arm64), runtime with major.minor (node 22.11, python 3.12) and client (Cursor, Claude Code...). Anything else is ignored and nothing finer is stored. Adds data.setups_like_yours: worked in setups like yours, N of M, last seen DATE, from KarmaDue reference runs and reports. | |
| include_demo | No | When true, include records marked demo. Default false. Demo records are fixtures, not verification evidence. | |
| intended_action | No | What you plan to do, in your own words (install, run the setup script, delete the prod database, pay $500, send an email, authorize OAuth...). The old values install_connector, call, pay, visit, clone and read still work. Default: install. |