Free CLI · point-in-time verification
Run or replay evidence yourself when you choose. Local use is free.
Use the free CLI →HOSTED MERGE PROOF
GitHub, CI, and review evaluate one candidate. Merge Proof follows that evidence through landing and shows whether that exact content became merge truth.
Public examples require no login, GitHub connection, App installation, private information, or CLI command.
VALUE BEFORE AUTHORIZATION
Inspect realistic outcomes in the real buyer presentation before deciding whether to grant GitHub access.
Run or replay evidence yourself when you choose. Local use is free.
Use the free CLI →After the trial, hosted Merge Proof observes selected repositories, tracks PR evidence and currentness, reconciles provider history, observes supported landings, and retains proof receipts.
SAFE TO TRY
7 days free. No card.
Merge Proof observes and reports without blocking your merges. Early Access currently reports what happened rather than enabling a required merge policy during the trial.
You'll need a GitHub account, a repository you can authorize, and an open PR for your first live proof. If none is open, we watch for the next one.
SECURITY & ACCESS
See exactly what authority you grant before connecting.
Yes. Contents read is real source access. Workflow text, API patch text and exact Git objects may reach the server to bind identities and reconstruct supported tree facts.
Receipts store normalized evidence, paths, hashes and proof facts—not incidental patch or decoded workflow text. A private partial bare mirror retains exact Git objects and receipt refs for replay.
No. Source contents are not sent to an LLM or AI provider, and no AI model decides the verdict.
Not through the standard connection. It has no Contents write authority and cannot push commits or modify repository files.
Checks read/write lets it publish or update its receipt Check on the PR. That does not grant repository-file write authority.
Install and authorize once. Merge Proof finds open PRs and starts proving automatically. Choose an account or repository only where needed. “Prove it now” is optional; provider, permission and capacity limits can require attention.
Continue afterward for $29/month per observed active developer. Otherwise new hosted proofs, re-proofs and scans pause without an automatic charge; existing receipts remain available with current authorization, subject to retention and capacity limits. New enforcing gates require paid Pro.
A successful proof means evidence collection completed for the current observed state: a CURRENT, collection-complete VERIFIED or NOT_PROVEN hosted receipt. NOT_PROVEN can mean missing, ambiguous, unsupported or unavailable evidence; it does not mean your code is broken. FAIL, unavailable or stale collection does not start your trial. Connecting GitHub, installing the App, authorizing repositories and historical scans do not start it either. One 7-day trial starts exactly once per paying account.
Checking your GitHub connection…
GitHub is connected and App installations were found. Choose an account to check its authorized repositories, or install the App on another repository.
INSTALL ON SELECTED REPOSITORIESUninstall or change repository access in GitHub App settings. Uninstall stops new proofs and denies hosted receipt access; accounting history is preserved for reconnect.
Merge Proof runs in the background. You can close this page. We will automatically check authorized PR activity.
This page stays still while you read. Use “Refresh account information” under Optional manual recovery to see newer observations. GitHub Checks are the outside-page result surface. Provider access, delivery and evidence limits can require attention. Signing out of this website does not uninstall the App or delete tracked work.
Checking automatic proof status
No open PRs yet. Merge Proof will watch for the next one automatically.
No hosted observation is available for the open PRs yet. Checking current evidence does not mean a current proof has been established.
These controls are not required for normal background operation. Refresh reads account information; “Prove it now” collects a new observation. Neither fixes unchanged evidence limits or permissions.
The Standard App uses Administration Read. Some GitHub workflow execution-policy details require Administration Write to read. Optional Enhanced Policy Proof uses a separately authorized, repository-bound policy reader for those reads only; it does not change repository administration.
This is a powerful GitHub grant: a stolen credential still has Write authority. The isolated reader rejects administration mutations. If this optional reader is unavailable, or GitHub cannot provide a needed policy detail, the affected policy or coverage claim remains NOT_PROVEN.
Select a repository to check this optional capability.
Turning this off stops enhanced reads and rechecks dependent claims; it does not uninstall the companion. Remove its repository access in GitHub to revoke the provider grant. Historical receipts stay unchanged.
Merge Proof defaults to report-only. Installing it does not configure a required GitHub gate. New enforcing policies require paid Pro and a repository administrator; GitHub must separately require the correct Merge Proof Check. Merge Proof never edits branch protection or rulesets. A passing policy Check is not necessarily a VERIFIED receipt.
Select a repository to see whether Merge Proof is required.
Merge Proof never edits your branch protection or rulesets. Changing this setting needs repository admin.
Pre-merge evidence held when the merge event arrived. When GitHub content can be bound, the record connects that receipt to landed content; exact decision-time currentness is still reported as unavailable. These records are kept as they were; later evidence does not rewrite them.
See how Merge Proof evaluates evidence from recent merges in this repository.
One free scan: up to 5 merged PRs from the 30 most recently updated closed PRs. Squash/rebase history is unsupported; current rules cannot prove historical approvals. This does not start your trial clock.
Hosted proofs and automatic re-proofs are included. We count distinct human GitHub IDs opening covered PRs or pushing covered commits during the subscription month. Bots are excluded; human attribution requires GitHub evidence. Initial count uses the last 30 days of observed covered activity.
Pro continues after verified payment. No automatic charge at trial expiry. Quantity increases require your confirmation; no proration. Decreases apply at renewal.