Shaduf.Research preview
Jev: Use Cases, Alternatives & Products/Integration trust: Claude Code and MCP guardrails, TypeScript paths and testing without a key
Research reportRun run:bd3c2f65-2199-4b1b-83d5-3a1135b103b0 · checks , 07:05–07:17 UTC

Jev (TypeSafe AI) integration trust: Claude Code and MCP guardrails, TypeScript paths and testing without a key

This dated report records the evidence behind the release of 29 September 2026. The maintained pages built from it are: Build hub, Claude Code and MCP, TypeScript, testing without a key, and corrections on errors and rate limits and products. Route and access check dates were updated on where to use and access status. All reports: research history.

Run: run:bd3c2f65-2199-4b1b-83d5-3a1135b103b0 (scheduled regular research run 2) · Pool: pool_jev_catalog · Runner: single agent · Checks: 2026-09-29, 07:05–07:17 UTC.

The run's full audit notes and its source ledger (76 entries: URL, access time, source date, version or commit, label, excerpt of 25 words or fewer, outcome) are held in the pool's private record. Key sources are linked in section 7 and on the pages each finding feeds.

Spot check by the pool manager (29 Sep): oh-my-claudecode src/hooks/jev/config.ts at 9fd35ec shows DEFAULT_TIMEOUT_MS = 250; danna-zhou/jev-mcp hooks/lib.mjs L46–61 at 436469a shows the fail-open helper exiting 0. Both match the runner's reading.

Previous release: bootstrap-2026-09-28-question-pages, published 2026-09-28T20:45:47Z; report: release 1 question pages.

1. Summary answer, as of 29 September 2026

Which Jev integration should a Claude Code or agent builder install, what does it send, and does it fail open?

We read the failure paths of five integrations in pinned source, and read the official plugin in full. The five implement five different contracts:

IntegrationWhat it isWhat it sends to JevIf Jev is missing, down, slow or returns junk
Official typesafe@typesafe-ai plugin (v0.5.7)Instructions for your coding agent; no hook, no MCP serverNothingNot applicable: it never calls Jev
danna-zhou/jev-mcp hooks (23 Sep)PreToolUse hook on Bash, Stop hook, MCP serverThe full shell command, only for commands matching its "high-stakes" listProceeds anyway (fail-open) in every failure class; also confirmed offline. rm -rf / is not on its list and is never checked
brunopivetta88/jev-claude plugin (0.1.0, 25 Sep)Hook plugin: allow/warn/ask/blockUser goal, full tool input (with regex secret redaction), last 8 action summaries, working directoryShips in shadow mode: flags only. In enforce mode it proceeds by default (its own hard rules still apply), or asks a person if JEV_GUARD_FAIL_OPEN=false
jkudish/jev-mcp (v0.11.0, 29 Sep)MCP server with 12 judgment toolsOnly what the agent passes to a toolFlags only (advisory). Malformed answers become "review", not "pass"
LangChain AutoModeMiddleware (langchain-typesafe 0.0.1a3)Tool-call guard middlewareTool call with full arguments, tool description, last 30 messages in fullStops/blocks (fail-closed). No key: the agent cannot be built. Any error ends the agent run. Risk ≥ 0.5 blocks the call
oh-my-claudecode v5.5.0Jev judgment points inside the plugin's hooksNothing unless OMC_JEV lists points; then per-point text cut to 200 charsFalls back to its built-in heuristic; all points run in shadow; default timeout 250 ms in the released version

So "installing a Jev guardrail" can mean anything from no runtime effect (official skill, shadow defaults) to a guard that halts the agent on any outage (LangChain). The default a user gets is usually not a gate. Two of the five ship in a shadow or log-only mode, one is advisory by design, and one fails open.

Which TypeScript path?

  • Official @typesafe-ai/sdk 0.6.0 (15 Sep; Node ≥ 20):
    • TypeSafe direct.
    • Typed helpers choice(), score(), noul().
    • 2 retries on 408/429/5xx, honouring Retry-After; 10 s per attempt.
    • Full error classes, and fetch injection for tests.
    • Nine open issues, including a crash on Node 20/22 when a call is cancelled.
  • AI SDK experimental_evaluate (ai ≥ 7.0.103, latest 7.0.122; Node ≥ 22):
    • The path for Vercel AI Gateway ('typesafe-ai/jev', AI_GATEWAY_API_KEY), or direct via @ai-sdk/typesafe-ai 3.0.10 (TYPESAFE_AI_API_KEY — a different variable name).
    • Experimental. Noul is called boolean and returns .probability; confidence sits in providerMetadata.
    • 2 retries by default; no default timeout; Experimental_EvaluationMockModelV4 for tests.
  • Raw fetch for any runtime or route, if you write the retry and timeout yourself (T04 shows a tested pattern).
  • Cloudflare Workers binding env.AI.run('typesafe/jev', …) on Workers.

How do I test without a key? Replace one layer: the transport (official SDK fetch option or Python transport), the model (AI SDK mock model) or the server (a local mock server). Then run the ten negative branches in the testing page's checklist. Each facility proves only its own layer. Project "no-key modes" (mock models, simulators, shadow defaults) are the main risk of Jev silently being skipped.

What changed since the previous release (28 Sep, 20:45 UTC)

Corrections to published pages

  1. Errors page (build/errors-and-rate-limits), oh-my-claudecode timeout.
    • The page says the 250 ms default was "raised to 2000 ms on 22 Sep".
    • PR #4092 was merged on 22 Sep 22:21 UTC into the dev branch.
    • The latest release, v5.5.0, and main still have DEFAULT_TIMEOUT_MS = 250 on 29 Sep (src/hooks/jev/config.ts L27 at 9fd35ec); only dev has 2000 (L36).
    • New wording: "raised to 2000 ms on the project's dev branch (PR #4092, merged 22 Sep); the latest release, v5.5.0, still defaults to 250 ms (checked 29 Sep)." (Documented: config.ts at v5.5.0 and on dev, and PR #4092.)
    • The earlier research note of 28 Sep was accurate about the PR but not about the released code.
  2. Products page, jev-mcp row.
    • The row is one of at least four unrelated jev-mcp repositories. It links jkudish/jev-mcp and grades it B (25 Sep).
    • New: name it "jev-mcp (jkudish)", regrade it A (call path read at v0.11.0, 29 Sep), and add "advisory: returns recommendations; the server never blocks".
    • Add separate rows for the other audited integrations (§4.5).
  3. Audience claims now checked in source (they were never published):
    • danna-zhou fails open — confirmed.
    • LangChain guard fails closed and sends the last 30 messages — confirmed for AutoModeMiddleware in langchain-typesafe 0.0.1a3.
    • jkudish is advisory only — confirmed at v0.11.0.

No change found in: signup status, new-user credit, status-page incidents, models and aliases, TypeSafe direct price, OpenRouter, Vercel, Cloudflare and Opper entries, or SDK versions (PyPI 0.7.2, npm 0.6.0). These fields only need new check dates (§4.6).

New facts that do not correct a page but belong on one

  • LangChain criteria bug: AutoModeMiddleware 0.0.1a3 sends no risk criteria unless the caller passes them. The constructor's criteria=None default replaces the documented default criteria (auto_mode.py L66–71, L147, L164), and a unit test asserts criteria is None. Documented.
  • Vercel template verified in source: its "≥ 95% confidence, else OpenAI fallback" is in lib/router.ts L8 and L128–162 at 27ea469, with 12 s / 25 s timeouts and one retry each. The fallback model is openai/gpt-6-luna-fast in source but openai/gpt-5.6-luna-fast on the template page.
  • AI SDK first version: experimental_evaluate first appears in ai 7.0.103 (16 Sep, type declarations), but Vercel's guide says "7.0.105 or later". Use 7.0.105 as the stated minimum and note the discrepancy.
  • Broken link in the official plugin: its SKILL.md links a migration guide that returns 404 (skills #13, confirmed 29 Sep).
  • Official repository not in the catalogue: typesafe-ai/n8n-nodes-typesafe-ai (created 23 Sep, MIT). Not opened.

2. Method, time window and evidence labels

Parts of this run: S1 = preceding-24-hour scan; S2 = recheck of volatile access and price fields; S3 = Claude Code and MCP audit; S4 = TypeScript paths; S5 = testing without a key; T04 = offline test.

Timing ledger (UTC, 29 Sep):

  • Start: 07:04:56.
  • S1 scan: 07:05–07:08 (cutoff 07:05:00).
  • S2 recheck: 07:07–07:09.
  • S3 audit: 07:09–07:14 (offline hook run ~07:12).
  • S4: 07:14–07:16.
  • S5 and T04: 07:16–07:17.
  • Write-up: from 07:17.

The whole run stayed inside the 70-minute box, so the stop rule was not triggered.

How sources were read.

  • Node v24 fetch, unauthenticated.
  • GitHub: one API call per repository to pin the commit and list the tree, then files from raw.githubusercontent.com/<owner>/<repo>/<sha>/<path>.
  • The LangChain package was read from its PyPI sdist (sha256 d77647a7…3272); nothing was installed.
  • AI SDK version membership was checked by reading published type declarations from jsDelivr.

Labels.

  • Tested: the pool ran it, offline, no Jev call.
  • Documented: official or route-owner docs, or source at a pinned commit with path and lines.
  • Reported: a named third party's own claim, including a README about its own behaviour.
  • Unverified: lead only.

No pool Jev call. No request went to api.typesafe.ai or to any gateway inference endpoint. No key, account or purchase.

Offline runs

  • Offline hook run, Tested:
    • Ran danna-zhou's PreToolUse hook (148 lines with its helper, standard library only, read in full), with no key, against closed ports on 127.0.0.1.
    • git push origin main: exit 0 and "jev guardrail unreachable, skipping review".
    • rm -rf / --no-preserve-root was not sent at all.
  • T04, Tested: a pool-authored Node client mirroring the official JS SDK defaults, run against a local mock server.
    • 429 + Retry-After: 1 then 200 → success on attempt 2 (1.05 s).
    • 529 × 3 → gave up after 3 attempts.
    • 401, HTML 403, 422, malformed JSON, out-of-set choice → immediate failure, no retry.
    • Hang → 3 timeouts in 3.9 s (800 ms per attempt).
  • Both ran in temporary directories that were deleted afterwards. Script source and output are published on Claude Code and MCP and Testing without a key.

Analytics: unavailable for this run (the read-only analytics connection was not available). No search volumes are stated.

3. Findings per page and ship verdicts

PagePlanner ship ruleEvidence this runVerdict
build/claude-code-mcp4+ integrations with disposition read at a pinned commit, 2+ types5 integrations read at pinned commits (danna-zhou, jev-claude, jkudish, LangChain AutoMode, oh-my-claudecode), 4 types (hook scripts, hook plugin, MCP server, middleware), plus the official plugin read in full; one Tested offline runShips
build/typescript@typesafe-ai/sdk and AI SDK paths both documented with version and dateSDK 0.6.0 (15 Sep) source read at tag; AI SDK ai 7.0.122 / @ai-sdk/typesafe-ai 3.0.10 docs read, first version 7.0.103 established; raw fetch and Workers binding documentedShips
build/testing-without-a-key4+ facilities with sources plus the checklist12 facilities (3 official/route-owner, 1 pool, 8 project/alternative) and a 10-row checklist; T04 TestedShips
build (hub)5+ build/* leaves published3 published + 3 that meet their rules = 6Ships if the three leaves ship; otherwise defer until the fifth leaf is live. The three leaves shipped in this release

3.1 build/claude-code-mcp

The page's core is the failure-disposition table (disposition per failure class, data sent, default mode), followed by the pre-install checklist and "how to check an integration yourself".

Key messages:

  1. The official plugin is documentation for your agent, not a guard.
  2. Check the default mode before assuming protection.
  3. What leaves the machine ranges from nothing to the last 30 messages.
  4. A regex pre-filter defines what a hook actually checks.
  5. A timeout below the round trip turns a guard off (oh-my-claudecode: 250 ms in the released version).

Keep the errors page as the owner of the general fallback procedure, and link to it.

3.2 build/typescript

Contents:

  • Comparison table.
  • Minimal call per path, with pinned versions.
  • The 12-row gotchas table.
  • Real-world examples: Jevmail's maxRetries: 0 pattern (carried), and the Vercel template's threshold-and-fallback, now verified in source.

No prices; model IDs link to the route matrix.

3.3 build/testing-without-a-key

Contents:

  • Facility table with "proves / cannot prove / silent-bypass risk".
  • Negative-path checklist. It links to the errors page for code meanings and does not duplicate the code table.
  • T04 as a worked example.

Link "low confidence" to build/confidence-thresholds and "no key yet?" to where-to-use/access-status.

3.4 build hub

Selection table in §4.4. Code interfaces only; no routes or prices.

4. Page contents, labels and check dates

Every field below carries its label and check date. "29 Sep" means 2026-09-29, 07:09–07:17 UTC unless stated.

4.1 build/claude-code-mcp — "Jev (TypeSafe AI) in Claude Code and MCP: which server, hook or plugin fails open?"

Direct answer (for the top of the page): Of five Jev guardrails we read in source, only one stops the agent when Jev fails (LangChain AutoModeMiddleware). Two ship in a shadow or log-only mode, one is advisory by design, one fails open, and the official TypeSafe plugin makes no Jev calls at all. Check the default mode, what the integration sends, and its timeout before relying on it. — Documented (source at pinned commits), 29 Sep.

Comparison table: the failure matrix on the page.

Required columns:

  • integration (owner, pinned version or commit, date);
  • official or community;
  • type;
  • sends to Jev;
  • (a) no key; (b) timeout with default; (c) HTTP error; (d) malformed; (e) low confidence;
  • default mode;
  • evidence grade.

Row labels and dates:

RowVersion / commit (date)LabelChecked
Official typesafe@typesafe-aiv0.5.7, 65a39f3 (12 Sep)Documented (full contents read)29 Sep
danna-zhou/jev-mcp (PreToolUse, Stop, MCP)436469a (23 Sep)Documented; no-key/unreachable cell also Tested (offline, no Jev call)29 Sep
brunopivetta88/jev-claude, shadow / enforce / enforce + fail-closed7d7e876, PR #1 merged 25 SepDocumented29 Sep
jkudish/jev-mcpv0.11.0, 53fe575 (29 Sep 05:30 UTC)Documented; TypeSafe-direct timeout unknown (dependency not read); README "never blocks on its own" Reported29 Sep
LangChain AutoModeMiddlewarelangchain-typesafe 0.0.1a3 (20 Sep), sdist sha256 d77647a7…3272Documented29 Sep
oh-my-claudecodev5.5.0 = main, 9fd35ec (22 Sep); dev differsDocumented29 Sep

Mandatory caveats on the page

  • "Normal permission flow" means Claude Code's own rules apply; it is not an approval. — Documented, 29 Sep.
  • LangChain 0.0.1a3 sends no risk criteria unless you pass criteria=NoulCriteria(...). — Documented, 29 Sep.
  • danna-zhou: set JEV_MODEL=jev-1.13.0 when pointing at TypeSafe; the default kev-latest is for a local Kev server. Whether TypeSafe rejects kev-latest was not tested. Earlier Reported evidence says unknown models return 400, which this hook would treat as "skip review". — Documented (defaults) / inference, 29 Sep.
  • oh-my-claudecode: v5.5.0 defaults to 250 ms, while the maintainers measured 465–605 ms round trips (Reported, #4091, 22 Sep). Set OMC_JEV_TIMEOUT_MS above your round trip. — Documented, 29 Sep.
  • jev-claude's tests run in enforce mode; the shipped default is shadow. — Documented, 29 Sep.
  • No integration was run against the live API. Star counts are not adoption.

Checklist and "check it yourself": Documented method; no live claims.

"Seen, not audited" box: Reported one-liners only, each dated 29 Sep; no dispositions for these rows. Flag codaaiteam's links to jevtypesafeai.com as "lookalike reseller storefront (Eye Security, 25 Sep)".

Links:

  • Hub: build.
  • Related: products (graded rows); use-cases (agent-guardrail row); videos (Claude Code group); build/errors-and-rate-limits (general fallback procedure and the oh-my-claudecode note); build/testing-without-a-key.
  • Excluded by plan: routing and compaction plugins (effort-router, Jevgrep, fast-jev-compaction; run 4).

4.2 build/typescript — "Call Jev (TypeSafe AI) from TypeScript: AI SDK experimental_evaluate vs @typesafe-ai/sdk vs fetch"

Direct answer: Use the official @typesafe-ai/sdk 0.6.0 for TypeSafe direct on Node 20+. Use AI SDK experimental_evaluate (ai 7.0.105+) if you are on Vercel AI Gateway or already use the AI SDK. Use raw fetch for other runtimes or routes, adding your own retry and timeout. — Documented, 29 Sep.

Fields, each Documented unless stated, checked 29 Sep:

  • Versions and dates:
    • @typesafe-ai/sdk 0.6.0 (npm 2026-09-15T18:17Z; tag 66880cc).
    • ai 7.0.122 (2026-09-28T21:59Z).
    • experimental_evaluate present from 7.0.103 (2026-09-16T18:36Z; type declarations read); Vercel's guide says "7.0.105 or later". State both.
    • @ai-sdk/typesafe-ai 3.0.10 (2026-09-28T22:00Z).
  • Install and runtime: SDK Node ≥ 20, and it refuses to run in a browser without dangerouslyAllowBrowser; ai Node ≥ 22.
  • Routes and auth variables: TYPESAFE_API_KEY / TYPESAFE_AI_API_KEY / AI_GATEWAY_API_KEY.
  • Minimal Choice call per path: mark each "Documented, not executed". Sources: SDK README and docs JavaScript page; ai-sdk.dev evaluation guide and TypeSafe provider page; docs quickstart; Cloudflare model page.
  • Behaviour fields:
    • Response fields.
    • Default retries: SDK 2; AI SDK 2; fetch none.
    • Default timeout: SDK 10 s per attempt, no total budget found; AI SDK none documented.
    • Error classes; stability ("experimental … may change in patch releases"); test facility.
    • Licence: SDK MIT; ai Apache-2.0.
  • Open SDK issues: #2, #6, #8, #9, #12, #13, #14, #15, #17 — Reported (GitHub, open on 29 Sep).
  • Examples:
    • Jevmail maxRetries: 0 — Documented at 28 Sep (carried, not re-audited).
    • Vercel template threshold 0.95 and fallback — Documented at 27ea469 (22 Sep), checked 29 Sep. Note the model-name mismatch between page and source.
    • MSFT-TKENDRICK/JEV-examples — "author states never executed live" (Reported, carried).
  • Gotchas table: 12 rows, each labelled. TS7's 31.5 s worst case is derived arithmetic from the SDK defaults, not measured.
  • "Seen" only: TanStack AI decide() (Vercel article, Documented by Vercel); LangChain JS not checked.

Links: hub build; siblings build/python and build/testing-without-a-key; videos (TypeScript group); what-is-jev ("next step"); model IDs link to where-to-use. No prices.

4.3 build/testing-without-a-key — "Testing a Jev (TypeSafe AI) integration without an API key: mocks, simulators and failure branches"

Direct answer: Swap one layer at a time — the HTTP transport (official SDKs), the model (AI SDK mock model), or the whole server (a local mock) — and drive each of the ten failure branches before you have a key. None of these proves how Jev itself answers. A no-key "mock mode" left on in production is the most common way a Jev check silently disappears. — Documented and Tested (offline), 29 Sep.

Facility table: 12 rows, with source, label and date in the last column. Current-run rows are checked 29 Sep; carried rows keep their 25–28 Sep dates.

Checklist: 10 rows (method and required behaviour only; link each code to the errors page).

Worked example: T04 script and output (Tested, offline, local mock server, no Jev call, 29 Sep ~07:16 UTC). State: "pool-authored client that mirrors the SDK defaults; the SDK itself was not installed". Also cite T01 (Python, 28 Sep) as the Python counterpart.

Silent-bypass examples:

  • QuantDinger: no key → allow (28 Sep audit).
  • jev-trader and Jev Trade: MODEL=mock by default (25–26 Sep).
  • danna-zhou hooks: fail open (Tested 29 Sep).
  • jev-claude: shadow by default (29 Sep).

Links: hub build; build/errors-and-rate-limits ("test the no-key and outage paths"); build/python; build/typescript; build/confidence-thresholds (low-confidence branch); where-to-use/access-status ("no key yet?").

4.4 build hub — "Build with Jev (TypeSafe AI): choose Python, TypeScript, HTTP, Claude Code or a gateway"

Selection table (code interfaces only; no prices):

PathLanguageRoute(s)Retries built inErrors mappedMock for testsMaturity (version, date)PageLabel, checked
typesafe-sdkPython ≥ 3.10TypeSafe direct; base-URL override (OpenRouter, Vercel, Pydantic gateway)2, on 408/429/5xx, 30 s budget400–404, 422, 429, 5xxtransport / http_client0.7.2, 26 Sepbuild/pythonDocumented, 29 Sep (version) / 28 Sep (rest)
@typesafe-ai/sdkTS/JS, Node ≥ 20TypeSafe direct; baseURL override2, on 408/429/5xx; 10 s per attempt400–404, 422, 429, ≥500fetch option0.6.0, 15 Sepbuild/typescriptDocumented, 29 Sep
AI SDK experimental_evaluateTS, Node ≥ 22Vercel AI Gateway; TypeSafe direct via @ai-sdk/typesafe-ai2 (Core)APICallError, InvalidResponseDataErrorExperimental_EvaluationMockModelV4ai 7.0.122 (28 Sep), experimentalbuild/typescriptDocumented, 29 Sep
Raw HTTPanyany System One endpointnoneyourslocal mock serverAPI v1build/typescript, build/errors-and-rate-limitsDocumented; T01/T04 Tested
Claude Code / MCP integrationsJS / Pythonvariesvaries (none in most)variesvariessee auditbuild/claude-code-mcpDocumented, 29 Sep

Plus links to build/errors-and-rate-limits, build/confidence-thresholds and build/testing-without-a-key. Ship only when at least five leaves are live.

4.5 Changes to existing pages

PageChangeLabel, date
HomeRouter rows for TypeScript, Claude Code/MCP, testing without a key; "what changed" box with the two corrections—
Use casesAgent-guardrail row and "build it" links → build hub and build/claude-code-mcp—
build/pythonSibling links to TypeScript and testing, hub link. Version pin 0.7.2 stays correctPyPI Documented, 29 Sep 07:07 UTC
build/errors-and-rate-limitsCorrection 1 (oh-my-claudecode 2000 ms only on dev). Link "test the no-key and outage paths separately" → testing page; the oh-my-claudecode note → claude-code-mcp. The LangChain classifier row ("single attempt, no retry") is consistent with 0.0.1a3 source (no retry code; 30 s timeout)Documented, 29 Sep
build/confidence-thresholdsIncoming link from the testing page's low-confidence branch—
ProductsCorrection 2 (details below this table)Documented, 29 Sep
VideosClaude Code group → claude-code-mcp; TypeScript group → build/typescript—
Where to use; Access statusNo value changes. New check dates for all S2 fields (§4.6). Status-page sentence re-dated: "did not link it on 29 Sep"Documented, 29 Sep 07:07–07:08 UTC
ResearchAdd this report; release log entry; gaps (§5)—
pool-ui.jsonBuild group: hub first, then python, typescript, claude-code-mcp, errors-and-rate-limits, confidence-thresholds, testing-without-a-key. Existing URLs unchanged—

Products, correction 2 in detail:

  • Rename "jev-mcp" to "jev-mcp (jkudish)": grade A, advisory, v0.11.0, checked 29 Sep.
  • Add or regrade rows, each linking to claude-code-mcp:
    • danna-zhou/jev-mcp: A; hooks fail open; MCP tools advisory.
    • jev-claude: A; shadow by default.
    • LangChain AutoModeMiddleware: A; fail-closed; experimental alpha; framework vendor, not TypeSafe.
    • oh-my-claudecode Jev points: A; heuristic fallback, shadow.
    • Official TypeSafe plugin: A; instructions only.
  • Optional: list typesafe-ai/n8n-nodes-typesafe-ai among official surfaces as "official repository, not reviewed".

4.6 Volatile fields for Where to use and Access status (all unchanged; new check dates)

FieldValueLabelChecked (UTC)
SignupOpen (CEO post, 27 Sep 22:33); console still 403 to our clientDocumented; console Unverified29 Sep 07:07–07:08
New-user creditTemporarily disabled (27 Sep post); no restoring statement foundDocumented29 Sep 07:08
Status pageNo incident after 28 Sep 16:07; API 90-day uptime 99.819%; not linked from site or docsDocumented29 Sep 07:07
Model / aliasesjev-1.13.0; jev-latest and jev-preview → jev-1.13.0Documented29 Sep 07:07
TypeSafe direct price$0.042/M input, output freeDocumented29 Sep 07:07
OpenRouter typesafe/jev-1.13$0.042/M, $0 output, 32,000 contextDocumented29 Sep 07:08
OpenRouter typesafe/jev-routerprices shown as −1; 1,000,000 contextDocumented29 Sep 07:08
Vercel typesafe-ai/jev$0.042/M, $0; zdr "none"; no_training "all"; 32,000Documented29 Sep 07:08
Cloudflare typesafe/jev$0.042 / $0.00; 32,000; ZDR YesDocumented29 Sep 07:07
Opper typesafe/jev-1.13.0$0.04 (rounded) / $0; 64K/32K; ZDR not establishedDocumented29 Sep 07:07
PyPI typesafe-sdk0.7.2 (26 Sep 21:20Z)Documented29 Sep 07:07
npm @typesafe-ai/sdk0.6.0 (15 Sep 18:17Z)Documented29 Sep 07:07

5. Evidence gaps and open questions

  1. No live behaviour. No integration was run against the real API. The 401/403 no-key path of the danna-zhou hook was inferred from code; the offline run covered unreachable endpoints only. Whether TypeSafe rejects model: "kev-latest" is unknown.
  2. jkudish TypeSafe-direct transport: timeout and retry behaviour live in @jkudish/jev-agent-tools 0.1.x, which was not read. Marked unknown.
  3. danna-zhou MCP server: no timeout in code. Behaviour on a hanging endpoint depends on the Node fetch defaults and the MCP client; not tested.
  4. jev-claude: the deterministic rule list (src/deterministic.mjs) was not read line by line. The owner mismatch (brunopivetta88 repo vs bruno-ship-it in its manifests) was not investigated. The Codex adapter was not audited.
  5. oh-my-claudecode: the per-point states and which hook events each point runs in (points.ts) were not read. The npm package name for the plugin was not verified.
  6. Official plugin install scope (user vs project) for claude plugin install is not stated in TypeSafe's docs; not tested.
  7. AI SDK:
    • The default timeout is undocumented.
    • The first version with experimental_evaluate conflicts: 7.0.103 by package contents vs 7.0.105 in Vercel's guide.
    • The @ai-sdk/typesafe-ai 3.0.9/3.0.10 changes were not diffed.
    • The Cloudflare binding's response shape and retries were not re-read.
  8. SDK behaviour not executed: the official JS SDK was not installed (T04 mirrors its defaults in pool code). T03 (Python SDK install) remains not done.
  9. Access: the console still returns 403. The credit status rests on the 27 Sep CEO post plus the absence of later statements. AI FrontPage and X oEmbed were not rechecked this run.
  10. Scan coverage:
    • Reddit, X, TikTok and Lobsters are unknown (blocked).
    • YouTube, GitHub trending and GitHub code search were not attempted.
    • npm and Hugging Face counts are capped.
    • New items (Jeff decision models, typesafe-ai/n8n-nodes-typesafe-ai, 12+ new hook/MCP repos) are leads only.
  11. Carried facilities (Jevmail /preview, QuantDinger tests, mockCallJev, Jev Workbench, jev-trader, Jev Trade, Ollaya/Kev) were not re-checked; they keep their 25–28 Sep dates.

6. Not done

  • Audits of the "seen, not audited" items (codaaiteam, AutoJev, mcp-jev, Afloat16): recorded as "seen, not audited" only. AutoJev's repository was not found.
  • Audits of the new S1 hook/MCP repositories (jev-scope-control, jev-gate, cc-jev-teacher, drift-guard, jevis, jev-harness, jev-linter, toolgate, jev-kit, jev-pruner, permit-mcp). These are candidates for run 3's first slot if the planner wants a larger table.
  • YouTube and GitHub trending surfaces in S1.
  • Diff of @ai-sdk/typesafe-ai 3.0.9/3.0.10 and of the TypeSafe homepage republish.
  • Reading @jkudish/jev-agent-tools, jev-claude/src/deterministic.mjs and oh-my-claudecode/src/hooks/jev/points.ts in full.
  • LangChain JS and TanStack AI paths beyond "seen".

7. Sources

The full source ledger is held in the pool's private record; the key pinned sources are below.

Key pinned sources:

Search published pools, pages, reports, and evidence.