EveryDev.ai
Subscribe
Home
Tools

4,314+ AI tools

  • New
  • Trending
  • Featured
  • Rate tools
  • Compare
  • Arena
Categories
  • Agents3274
  • Coding2275
  • Infrastructure1000
  • Projects696
  • Marketing636
  • Research587
  • MCP532
  • Design508
  • Analytics506
  • Testing394
  • Security376
  • Data327
  • Integration244
  • Prompts244
  • Communication235
  • Extensions217
  • Voice193
  • Learning190
  • Commerce170
  • DevOps153
  • Web103
  • Finance36
AI Tools by Topic
  • AI Coding Assistants
  • Agent Frameworks
  • MCP Servers
  • AI Prompt Tools
  • Vibe Coding Tools
  • AI Design Tools
  • AI Database Tools
  • AI Website Builders
  • AI Testing Tools
  • LLM Evaluations
Follow Us
  • X / Twitter
  • LinkedIn
  • Reddit
  • Discord
  • Threads
  • Bluesky
  • Mastodon
  • YouTube
  • GitHub
  • Instagram
Get Started
  • Users
  • Rate Tools
  • About
  • Editorial Standards
  • Corrections & Disclosures
  • Community Guidelines
  • Advertise
  • Contact Us
  • Newsletter
  • Submit a Tool
  • Start a Discussion
  • Write A Blog
  • Share A Build
  • Terms of Service
  • Privacy Policy
Explore with AI
  • ChatGPT
  • Gemini
  • Claude
  • Grok
  • Perplexity
Agent Experience
  • llms.txt
Theme
With AI, Everyone is a Dev. EveryDev.ai © 2026
    1. Home
    2. Tools
    3. gdp-ts
    gdp-ts icon

    gdp-ts

    Application Security
    Featured

    A TypeScript library, linter presets, and AI agent skill implementing Ghosts of Departed Proofs to catch authorization and entitlement bugs at compile time.

    Visit Website

    At a Glance

    Pricing
    Open Source

    Free to use, modify, and distribute under the MIT License.

    Engagement

    Available On

    API
    SDK
    CLI

    Resources

    WebsiteDocsGitHubllms.txt

    Topics

    Application SecurityAccess ControlAI Development Libraries

    Alternatives

    AURA: AI User Risk Assessment FrameworkDopplerReco
    Developer
    Guillermo RauchSan Francisco, CA

    Listed Oct 2026

    About gdp-ts

    gdp-ts is an open-source TypeScript library, linter, and AI skill published under the rauchg GitHub account. It implements Ghosts of Departed Proofs so that authorization and entitlement checks are enforced by the type checker rather than by convention. The library ships on npm as @gdp-ts/core, and the skill can be installed to guide coding agents.

    What It Is

    gdp-ts is a verification pattern for TypeScript API contracts. Instead of letting any caller invoke a sensitive function with a raw id, the function signature demands a proof, such as that a user is a project admin or that a plan includes a feature. Calling it with no proof, a wrong proof, a proof about a different value, or a raw id is a compile error. The README says the approach works with any TypeScript codebase and runtime, and does not change how you do I/O.

    How the Proof Workflow Works

    The workflow has three steps. First, name(x, k) gives a runtime value a compile-time-only name inside a callback, so two string ids become distinguishable to the compiler. Second, a small trusted module in proofs/ performs a check and returns a Proof, or null; only that module can mint the proof, and at runtime a proof is a frozen object. Third, sensitive data-layer functions declare proof parameters about their exact arguments, so routes, Server Actions, or jobs cannot skip the check.

    Package, Linter, and Agent Skill

    @gdp-ts/core contains name(), defineProof(), Named and Proof with no dependencies, plus ESLint and Oxlint presets that catch forged proofs such as casting with as or minting proofs outside proofs/. The agent skill is plain Markdown covering a workflow checklist, a six-step recipe, patterns, error reading, documented limits, and guidance on where to stop. It requires TypeScript 5.4 or newer.

    Where It Fits

    The README distinguishes gdp-ts from policy engines (it ensures a decision reaches the dependent function rather than making the decision), from branded types (names identify which value, not just what kind), and from validation libraries (it proves relationships between values rather than data shape). Examples include a framework-free basic demo, an Express 5 app, and an Express with Drizzle and PGlite app.

    gdp-ts - 1

    Community Discussions

    Be the first to start a conversation about gdp-ts

    Share your experience with gdp-ts, ask questions, or help others learn from your insights.

    Pricing

    OPEN SOURCE

    Open Source (MIT)

    Free to use, modify, and distribute under the MIT License.

    • Library @gdp-ts/core with name(), defineProof(), Named and Proof, no dependencies
    • ESLint and Oxlint lint presets
    • AI skill installable via npx skills add rauchg/gdp-ts
    • Requires TypeScript 5.4 or newer

    Capabilities

    Key Features

    • Compile-time enforcement of authorization and entitlement checks
    • name() for compile-time-only value names
    • defineProof() for minting proofs in trusted modules
    • ESLint and Oxlint presets to prevent forged proofs
    • Agent skill guiding coding agents through the pattern
    • Incrementally adoptable with any TypeScript codebase and runtime
    • Near-zero runtime overhead
    • Examples with Express and Drizzle

    Integrations

    ESLint
    Oxlint
    Express
    Drizzle
    npm
    API Available
    View Docs

    Ratings & Reviews

    No ratings yet

    Be the first to rate gdp-ts and help others make informed decisions.

    Rate other tools you’ve used

    Developer

    Guillermo Rauch

    San Francisco, CA
    Read more about Guillermo Rauch
    WebsiteGitHubX / Twitter
    2 tools in directory

    Similar Tools

    AURA: AI User Risk Assessment Framework icon

    AURA: AI User Risk Assessment Framework

    An open-source library of structured behavioral matrices, heuristics, and validation tooling to detect manipulation, deception, and grey-zone threats in human–AI interactions.

    Doppler icon

    Doppler

    Doppler is a secrets management platform that securely stores, manages, and syncs API keys, database URLs, and other sensitive credentials across teams, pipelines, and AI agents.

    Reco icon

    Reco

    Reco is a Dynamic SaaS Security platform that discovers, governs, and protects SaaS applications, AI agents, and identities across the entire SaaS lifecycle.

    Browse all tools

    Related Topics

    Application Security

    AI tools for securing software applications and identifying vulnerabilities.

    133 tools

    Access Control

    AI-enhanced tools for managing authentication and authorization.

    40 tools

    AI Development Libraries

    Programming libraries and frameworks that provide machine learning capabilities, model integration, and AI functionality for developers.

    343 tools
    Browse all topics
    Back to all toolsSuggest an edit
    ratings
    discussions