Propose
An agent submits a structured amount, currency, opaque payee reference, purpose, expiry, and idempotency key.
Parimit lets an AI agent propose a payment intent, applies deterministic policy, routes the exact request for reviewer decision, and produces verifiable evidence—without connecting to a payment rail.
No UPI, bank, PSP, wallet, merchant, debit, settlement, refund, or payment-execution connection exists in this release.
moves_money: false
A narrow, inspectable workflow
Parimit separates an untrusted proposal plane from a distinct reviewer role. In OIDC mode that role can be bound to an authenticated subject. Approval is evidence, not a payment instruction.
An agent submits a structured amount, currency, opaque payee reference, purpose, expiry, and idempotency key.
Deterministic rules check limits, payee lists, daily exposure, purpose, expiry, and whether dual approval is required.
One or two distinct reviewer identities approve or reject the exact proposal. Local-demo identities are spoofable labels; OIDC mode verifies authenticated subjects. Agents never receive approval authority.
Parimit issues non-dispatchable receipts and short-lived signed evidence, then appends the decision to a hash-linked audit history.
The architectural boundary
The proposal, policy, decision, and evidence surfaces share one rule: no shipped interface can turn approval into a provider command.
Available in alpha.4
Use Parimit locally as a browser demo, through REST and a role-shaped SDK, or through a deliberately narrow MCP process.
Structured validation, deterministic policy, one- or two-person review, cancellation, expiry, idempotency, and mock outcomes.
OpenAPI-documented endpoints and dependency-free TypeScript clients shaped for each permitted role.
Open API specificationCreate, inspect, cancel, evaluate policy, simulate mock outcomes, and read audit history—never approve or execute.
Inspect the MCP surfaceSignature, issuer, audience, lifetime, algorithm, and fail-closed role validation in a local TLS pilot profile.
View local pilotHMAC receipts, audience-bound Ed25519 envelopes, JWKS verification, one-time local consumption, and hash-linked audit.
Read the envelope specA source-review-anchored adapter turns fixed synthetic drafts into Parimit simulations or proposals. No native connector or payment authority.
Review the adapterEvidence, not adjectives
The 101 automated tests are current for alpha.4. The 16-check AiNxt smoke is a separately scoped prior-commit record. Neither establishes payment connectivity, certification, or production readiness.
Policy, identity, evidence, HTTP, MCP, adapter, storage contract, audit, and boundary behavior.
Passing in alpha.4Role-shaped capability separation, request encoding, direct JWKS use, and structured errors.
Passing in alpha.4At Parimit commit d9807d3: one synthetic coffee proposal, exact replay, policy-denied mobility fixture, and loopback-only components.
AWAITING_APPROVAL.Zero approvals were attempted. No interactive human participated. The denied scenario created nothing. Payment-execution capability remained false.
Relationship to India’s ecosystem
Parimit is independently implemented. Its separation between an AI-facing proposal plane and a payment boundary was informed by publicly available NPCI AiNxt OS material. No AiNxt source code was copied into the initial implementation.
The optional AiNxt adapter is a controlled compatibility study—not an NPCI integration, certification, native tool, AtOM connection, UPI connection, or authorization to access a regulated payment rail.
Inspect source provenanceHonest readiness
The next milestones strengthen identity, storage, operations, and external accountability before any regulated integration is even considered.
Read the real-integration gatesProposal governance, safe interfaces, local demo, OIDC pilot profile, evidence, documentation, and public release.
Two real people complete reviewer and administrator device login, inspect exact fictional proposals, decide, and retain a redacted report.
Live PostgreSQL parity, managed keys, distributed replay defense, monitoring, rate limits, backup, disaster recovery, and independent security work.
A separate deterministic executor, licensed bank or PSP relationship, webhooks, reconciliation, certification, legal review, and written approvals would all be required.
For builders and reviewers
Parimit runs locally on Node.js 24 with no third-party runtime dependencies. The browser demo stores demo state locally; use only fictional data.
# Run the proposal-only local demo
git clone https://github.com/cad07/parimit.git
cd parimit
npm start
# Verify tests, SDK and boundary checks
npm run check
Plain answers
No. The alpha has no bank, PSP, UPI, wallet, merchant, or payment-provider connector. The simulator creates labelled fictional outcomes only.
No. Approval records that configured policy and reviewer-decision conditions were met; only OIDC mode authenticates the reviewer subject. The evidence is deliberately non-dispatchable and signs explicit false values for execution authority and money movement.
No. Parimit is an independent open-source project. Public AiNxt material informed part of the safety boundary, and a source-reviewed compatibility sidecar exists, but there is no NPCI endorsement, certification, or rail access.
No. It is suitable for research, code review, local demonstrations, and a controlled synthetic pilot after interactive acceptance. Real-money production remains a hard no-go.
Bounded by design
Read the code, reproduce the checks, and help strengthen the line between agent intent and real-world value movement.