YYLO Ledger · stable 0.4.0
YYLO Ledger documentation
Install standalone Ledger and manage tasks, wiki knowledge, workflow definitions and artifacts in one Git-native store.
On this page
Install and verify
Python 3.8+ and a shell. A virtual environment keeps the selected Ledger executable explicit.
Stable is the default. The latest published prerelease is an explicit choice, not a stable upgrade. Source version 0.4.0 is tracked separately from publication.
Registry channels checked . A prerelease channel may be older than stable; compare the exact versions above.
Stable 0.4.0
Tasks and dependencies
Keep task intent, status, blockers and responses in Git-native records.
Use create, list, search, get, update and mark for the legacy flat task interface. Native Records also provide a typed task profile.
Dependencies must be explicit: ready finds unblocked work and order sorts dependencies. Cycles and invalid completed-task transitions fail before writes.
Use body-file and response-file transport for rich Markdown; do not hand-edit the store.
Boundary: Ledger records work; it does not own coding-agent execution or Git integration.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Native Records: wiki, workflow and artifacts
Use immutable IDs and revision-safe updates for durable engineering memory.
Wiki stores Markdown knowledge. Workflow stores validated definitions but does not execute them. Artifacts retain provenance and intentional payload modes.
General Records and typed profiles share ID-first discovery. Aliases resolve to an immutable ID; updates use revision/preimage controls.
Search is bounded by count and bytes. Summary excludes payload bytes; full output is an explicit audited choice. Sensitive records expose safe identity metadata.
Boundary: Storage, workflow execution and evidence retention remain separate authorities.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Read-only Record host
Serve bounded local views without exposing a mutation API.
The host exposes record, history, wiki, workflow and artifact routes. Loopback is the default.
Non-loopback access requires an explicit private policy. External artifact redirects require approved HTTPS hosts; traversal and unsafe redirects fail closed.
Boundary: No write, workflow-execution or arbitrary remote-fetch API.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Preservation-first migration
Copy legacy knowledge into Records without deleting original files.
Inventory, plan, apply, status and verify use explicit receipts outside the source root. Review the plan before apply.
Plans bind source bytes, destination, runtime and record identities. Drift fails closed. Retries reuse only matching migration provenance.
Boundary: Migration is not cleanup: source deletion is never performed.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
History and cold archives
Keep current state and append-only history separate.
Markdown and segmented ledgers are canonical. SQLite is a rebuildable query cache. Default discovery reads hot work; exact ID lookups can resolve verified cold packs.
Archive-pack planning and creation are separate, revision-bound owner operations requiring clean state and external receipts. Follow up with a new related task rather than reopening a cold ID.
Boundary: Never edit sealed packs or automate destructive archival.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Install independently distributed skills
Acquire reviewed skill procedures separately from the Ledger runtime.
Ledger 0.4.0 selects seven legacy-compatible YYLO procedures; the four Record skills are the standalone Ledger subset by purpose, not the installer count. Use the open Skills CLI or compatible YYLO CLI for the complete eight-skill catalog, including Benchmark.
Acquisition is explicit and uses the network; local status and ordinary Record commands remain offline. Customized copies are preserved unless replacement is explicitly authorized.
Boundary: Review installer compatibility before selecting a newer skills tag. Installing Ledger is not installing skills.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Cross-project routing and machine output
Make destination and output projection explicit.
Project routing is opt-in and allowlisted. Invalid or stale routes never silently fall back to the source board.
Use JSON, NDJSON, XML or table output. Request bounded projections rather than dumping all payloads.
Boundary: The destination wrapper and policy remain authoritative.
Capability evidence
Published 0.4.0 source archive documentation and installer source reviewed; immutable artifact/README digests retained.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Stable 0.4.0
Retrieve any Record by ID
Read tasks, documents and artifacts without guessing their kind.
New identities use task_, doc_ and artifact_ storage-kind prefixes. Existing IDs remain valid. PDRs can be artifact/report Records.
Collection JSON is one object containing tasks and summary, including empty results. Exact get and collection projections have distinct shapes.
Small readable payloads are included by default. Explicit --content reads bounded local/inline bytes; external URLs are never fetched implicitly.
Boundary: Metadata is not proof that payload bytes were retrieved. Inspect omission reasons and preserve missing, ambiguous or corrupt Record diagnostics.
Capability evidence
Published archive README and package metadata inspected; artifact integrity and README digest retained below. Documentation review is not a live-provider test.
Verified exact releases: 0.4.0.
Package-owned source files: README.md . Their fingerprints are checked by the frontend generator.
Troubleshooting
Start with the executable’s --version and --help. If a command is missing, compare its availability label with your installed version. Do not silently install a prerelease to make an example work.
Ledger and Benchmark can be used standalone. YYLO delegates enforce compatibility separately; newest packages are not automatically a compatible combination. For sandbox, credential or workspace failures, repair the named prerequisite before dispatch. Preserve logs and retained evidence; do not delete state to hide a failure.
Sources and release evidence
Capability review: 2026-10-07. Reviewed version: 0.4.0. Changes by version. Canonical package repository. Published availability below is verified for exact versions, never inferred from the current source version.
- yylo-ledger 0.3.1 artifact
Integrity and provenance
sha256-a766836b4c7a796d1ff716d7d852061f2886e7be76ae96bb170c1f8243490866
README SHA-256: 99a2f471e18c020a17d4e9422e235f8993cd7d19fbd2641d37f3a1857cc2eeb3
- yylo-ledger 0.4.0 artifact
Integrity and provenance
sha256-20412cc8551a124e6cbc4c77258a37a26397ee40982657482ffe9d7a8357883a
README SHA-256: 3e2fb895baca0c10b9a3e544749b3563e386249cff4ef39f4d8c012acaccbeba
Discover Skills for reusable agent procedures. Skills summarize intent here; the tagged repository owns the complete instructions.