Mantyl.dev
Launch offer · 20% off your first verification with codeenter it at checkout
MTL.00 / Agentic software handover · For AI-first builders

Hand over AI-built software with proof.

Mantyl compiles your repository, your coding-agent history and executed checks into a verified project passport, a handover document your client can independently re-run.

See a real passport
Free, local-first CLINo account requiredUseful in one run
Claude CodeCursor (beta)Codex (beta)Docker verifiedNode 20+
Mantyl CLI · ~/mantylSelf-run
mantyl scan .
repository indexed13 modules · monorepo
agent history ingestedclaude code · 14 decisions
mantyl verify
5/5 checks reproducedclean docker sandbox
env undocumentedANTHROPIC_API_KEY
mantyl generate
passport writtendigest 495fc5a9…
mantyl receive
independently reproducedno divergence · exit 0
Mantyl is verified with itself
5/5Checks reproduced · the live self-passport
Claude Code · Cursor · Codex
MITFree CLI · open passport.json schema
MTL.01 / The handover, twice

The zip arrives. The knowledge doesn’t have to disappear with it.

On the left, what the recipient of an agentic build gets today: a repository, a README the agent wrote, and optimism. On the right, the same project delivered with a passport.

The handover today
!“rate limiting enabled”no way to check
~works on the machine it was built onsetup
!why Redis was droppedlost with the session
!a file edited after deliveryundetected

The code runs. The story of how and why it runs left with the closed context window, and the client finds out slowly.

With a passport
+every claim labelled with its evidenceagent · repo · verified
+setup executed in a clean sandboxreproduced
+decisions recovered from sessions, datedrecorded
+any post-delivery change named by filereceive

The recipient re-runs the checks on their own machine before accepting. Both sides know exactly what changed hands.

MTL.02 / The delivery workflow

Your workflow already ends at delivery. Now delivery carries proof.

Four stages in the order you already work. Nothing changes until the end of the project, and the end becomes evidence.

Build

Your agents, your repo, your pace. Mantyl reads Claude Code, Cursor and Codex history where it already lives, so the project needs no ceremony while it’s being made.

Prove

mantyl verify executes install, build and tests in a Docker sandbox. Then every claim is labelled with what the evidence supports, never blended.

auth · verifiedpostgres 16 · repositoryrate limiting · contradicted

Deliver

mantyl generate compiles the passport and you approve every line before it goes anywhere. Publishing to a shareable link is one command and your choice.

passport.json · digest bf364cce…

Accepted

Your client runs mantyl receive and reproduces the checks on their own machine. Divergence is named by file. Agreement ends in exit 0.

$ mantyl receive → exit 0

Narrow integrations, deep output: Claude Code and TypeScript first, with Cursor and Codex in beta. The eight-status truth model behind the labels is documented in the truth model.

MTL.03 / The passport

Not a wall of generated docs. A document someone signs.

Architecture, setup, decisions, risks, unfinished work and verification results. Every claim is labelled with its source, every section linked to evidence, ending in acceptance rather than optimism.

Mantyl · Project passportSigned · e4f2a91
Projectbooking-app
Issued20 Jul 2026
BuilderR. Okafor · Studio North
RecipientHarbour & Co
Claims verified34 / 41
Unknowns6 surfaced
01Architecture & services
02Setup & environment, reproduced from clean clone
03Decisions & abandoned approaches (8)
04Risk register & unknowns (6)
05Verification log: build, tests, types
06Acceptance record
P<MANTYL<<BOOKING<APP<<STUDIO<NORTH<<<<<<<<<E4F2A91C7<<34OF41VERIFIED<<ACCEPTED<<<<<<<<4
Provenance, line by line

Reads like a review, not a promise

Verified, repository-backed and agent-only claims are kept apart, and unknowns are findings, not footnotes. Visible uncertainty is safer than manufactured confidence.

+build reproduced from a clean cloneverified
+42 tests passed, 0 failed, 3 skippedverified
~postgres 16 via docker-compose, no managed backuprepo
~sessions moved from Redis to JWT, why undocumentedrepo
!“rate limiting enabled”, no middleware in repoagent only
!payment refund path, not tested, no coverageunknown
Setup that survives you

Install, run, deploy: reproduced

Environment, dependencies and run steps verified from a clean machine, not copied from a README that was true three weeks ago.

Decisions

The why, extracted from history

Key decisions and abandoned approaches recovered from your agent sessions and recorded with dates and links before they vanish.

Acceptance

A record both sides can stand on

The recipient acknowledges what was delivered, verified and left outstanding. You keep a defensible record of the transfer.

Read a real one first: the passport Mantyl generated for itself, live and hosted. Then the annotated example for booking-app with all eight sections, including the check that failed.

MTL.04 / The first run

Useful in one run. Strongest with Docker.

Start with mantyl doctor: it tells you honestly what your first passport will contain. Without Docker you still get facts, claims and recovered decisions. With Docker Desktop running, the passport carries executed proof, which is the point of the document.

First run · no Docker, no configHonest draft
mantyl doctor
node 22 · git · sessions found
docker not runningchecks will be skipped
mantyl scan .
facts, claims and decisions extracted
skipped checks recorded as skipped
Full run · Docker Desktop upFull result
mantyl doctor
node 22 · git · sessions · docker
mantyl verify
install · build · testsexecuted in sandbox
setup locally verified
claims re-labelled against executed evidence

Skipped checks are recorded as skipped, never passed. A thinner passport that tells the truth beats a thicker one that guesses.

MTL.05 / The trust layer

Independent, like a surveyor.

A house buyer doesn’t take the builder’s word for it, they pay a surveyor for independent assurance. Mantyl holds that position for software: the verification layer between an AI-built project and its next owner.

  • Deterministic checks, not opinions. The mark is earned by executed verification, never by generated prose.
  • Every assertion links to evidence. Build output, test runs and configuration, all inspectable by the recipient.
  • Scope and limitations stated. The mark says exactly what was checked, when, and against which commit.
Accreditation · e4f2a91
Mantyl Verified
Projectbooking-app
Checks executed6 · 1 failed, stated
Claims verified34 / 41
Issued20 Jul 2026 · clean machine

Documentation is not the product. Trust is. The mark is revoked if the evidence behind it can’t be reproduced.

MTL.07 / Pricing

The tool is free. You pay when proof changes hands.

The CLI is free forever, hosted passports are free while Mantyl is in alpha, and Mantyl Verified is a one-off credit per project at the moment a delivery needs independent proof. Agency comes later: £99 a month for a hundred verifications, once one-off credits have earned it.

Live now

CLI

Free. Forever. No account.

£0 FOREVER

  • Local-first CLI, unlimited projects
  • Scan, verify, generate and receive
  • passport.json stays an open format
  • HTML and Markdown reports, built locally
  • Fail-closed secret redaction
Install from npm

Hosted passports

Free while in alpha

£0 DURING ALPHA

  • One command publishes an approved passport
  • Shareable link with the full report
  • Server re-checks schema and digest
  • Unpublish any time with your delete token
  • Never your source code, only the passport
Read about publishing
New

Mantyl Verified

One credit per project

£19–£49 PER PROJECT, BY SIZE

  • Independent re-execution on clean infrastructure
  • Every recorded check reproduced in a fresh sandbox
  • Signed accreditation, publicly checkable offline
  • The mark on your hosted passport
  • Pay at handover: no subscription to justify
How Verified works

No paywall stands between you and a finished handover, and passport.json stays open so the ecosystem can build on the format. Every tier is spelled out in full on the pricing page.

MTL.08 / Principles

Local-first. Nothing leaves until you approve it.

Local analysis

The CLI runs where the project lives

Raw code and transcripts are processed locally by default, behind fail-closed secret redaction. Nothing needs to leave your machine to get a passport.

No telemetry

The CLI never phones home

No usage tracking, no crash reporting, no analytics in the tool itself. That is a product promise, not a settings default.

Approved publishing

Automation drafts. You publish.

The owner decides what a recipient sees. Sensitive history and wrong inferences never go out blindly.

Honest labels

Failed checks stay visible

No magic quality scores and no hidden failures. We never tidy a passport to make it look healthier. Visible uncertainty is the product working.

Documentation describes software. Agent memory continues it. Observability explains it.Mantyl transfers responsibility for it.

MTL.09 / Questions builders ask

Fair challenges. Straight answers.

Isn't this just generated documentation?

Documentation describes software; Mantyl transfers responsibility for it. The difference is provenance and verification. Every claim is labelled as agent reported, repository confirmed or verified by execution, checks actually run in a sandbox, and the recipient can independently recheck everything with one command. Documentation that merely repeats what an agent said is exactly the problem.

Couldn't I just prompt my agent to write a handover doc?

A prompt produces prose from one session's memory. Mantyl ingests history across sessions, inspects the repository directly, runs deterministic checks, detects contradictions between what was said and what exists, and records the decisions that shaped the project. The value is the evidence chain, not the text.

What's free and what's paid?

The CLI is free forever with no account, and hosted passports are free while Mantyl is in alpha. Mantyl Verified is the paid layer: a one-off credit per project (£19 to £49 by project size) buys an independent re-execution of your recorded checks on clean infrastructure and a signed accreditation on the passport. Credits are refundable until the verification runs, and there is no subscription until Agency arrives.

My code and transcripts are sensitive. What leaves my machine?

Nothing, unless you publish. The CLI is local first: scanning, verification and reports all happen where the project lives, and transcripts pass through fail-closed secret redaction before anything is stored. Publishing uploads the passport document you approved and nothing else, never your source code.

We only hand projects over a few times a year.

Then the free CLI already covers you. Generate a passport at each delivery, publish it if the client wants a link, and pay nothing. When a delivery deserves independent proof, one Verified credit covers that one project, which is exactly how often handovers actually happen. No subscription to justify.

Which agents and stacks are supported?

Claude Code and TypeScript projects first, with Cursor and OpenAI Codex support now in beta: Mantyl reads their local session stores the same way, with the same redaction, so claims and decisions flow from any of the three. Narrow integrations produce deep output, and more agents follow as each one reaches the same standard.

MTL.10 / Get Mantyl

Cleared for handover.

The CLI is free and local first. There is no account and nothing leaves your machine unless you say so. Install it, run it on a real project, and the next delivery you make carries proof instead of promises.

Read the quickstart
Free CLI · No account · Local first · MIT licence