All tools / AI quality & safety
proposeapply
Let an AI propose changes; a person approves; one call undoes them.
Buy proposeapply for $149One payment of $149, plus sales tax where it applies, and every future update. Delivered as a private GitHub repository you're invited to.
See it work
proposeapply demo
State folder: proposeapply-demo
welcome.txt starts as: 'Hello'
1. Applying is OFF by default.
refused: notes/do is switched off
switched the 'do' verb on (ceiling stays 'low').
2. The model proposes (a stand-in model here).
kept a1 risk=low appliable=True reversible=True
dropped a2 risk=high (above the ceiling)
cost logged: $0.002400
3. A person approves; the dock applies.
applied 1, failed 0; id act_2026-10-05T10:10:26Z_b5c6fe6e
welcome.txt is now: 'Hello, and welcome!'
4. One call undoes it.
undo ok=True; welcome.txt is back to: 'Hello'
Spend today: $0.002400. The log is proposeapply-demo/actions.jsonl
Read it with: proposeapply log --dir proposeapply-demo
What it does
proposeapply is the part between a model's suggestion and your data. A model proposes changes in one strict JSON shape, a person approves, and registered handlers apply them. Every change goes into an append-only log and can be undone with one call, under a daily spend cap and off-by-default switches. You supply the model call and the handlers.
- Strict envelope
- A malformed model reply is rejected whole, and the model can only name a kind of change you registered.
- One-call undo
- Your inverse runs with the recorded diff, and it works even while the dock is switched off.
- Append-only log
- Every applied change is a row, an undo appends a row, and damaged or non-UTF-8 lines are skipped.
- A spend cap that holds
- Daily and per-call caps in your time zone. A call that cannot be priced is still logged against the cap.
- Off until you switch it on
- Master, verb and panel switches start off, applying is refused while they are off, and a risk ceiling drops anything above it.
- A file helper
- text_file_action replaces text inside one folder, keeps line endings and permissions, and refuses an undo over later edits.
What you get
proposeapply 1.0.1: the Python package and the proposeapply command (demo, log, spend, controls, undo), examples, and the full test suite, with 201 automated tests.
A commercial license. Use it and change it in your own projects and your clients' projects. Don't share or resell the source. Read the license.
Every update. New versions land in the same repository; git pull to get them.
Requirements
Python 3.10 or newer. Python 3.10 or newer, standard library only. tzdata is optional, for named time zones on systems without a time zone database.
How buying works
- Enter your GitHub username. You'll see the account before you pay, so you can check it's yours.
- Pay $149, plus any sales tax shown at checkout, on Stripe's checkout page.
- Accept the invitation GitHub emails you. Signed in as that account, you'll also find it at
github.com/dominares-tools/proposeapply/invitations. Invitations expire after 7 days; you can get a new one any time. - Clone and install:
git clone https://github.com/dominares-tools/proposeapply.gitPrivate repo: sign in to GitHub on this computer first. Run
gh auth loginand choose HTTPS, or give git a personal access token when it asks for a password. To use an SSH key instead, clonegit@github.com:dominares-tools/proposeapply.git.python3 -m venv .venv && . .venv/bin/activate pip install ./proposeapply
Questions
Do I need GitHub?
Yes. Access is a read-only invitation to a private repository, sent to the GitHub account you choose.
Can I get a refund?
Yes, within 14 days, no questions asked. Access ends when the refund goes through. Refund policy.
Who takes the payment?
Payments are handled by Stripe, which works out sales tax. Your receipt and card statement show Link (LINK.COM*), Stripe's checkout service.
Something wrong?
Email support@dominares.org. Every buyer of a tool shares its repository, so support happens by email rather than in GitHub issues.