How it works: I send a plan first, and nothing is written until you approve it. An AI coding agent (currently Google's Jules) implements it and runs your tests. My system then applies the patch to a clean checkout and runs the tests again in an isolated sandbox with no network access, and records a receipt with SHA-256 digests of the patch and the test output. I review it before opening the pull request, and the PR says which AI wrote it.