OpenErrand 0.1: an errand on a website with no API, with the human steps kept human (#227)

* OpenErrand 0.1: an errand on a website with no API, with the human steps kept human

docs/openerrand.md mints OpenErrand: one JSON file per errand (register an
account, download a transcript) naming the site, the inputs with a
sensitivity class and ordered sources (document, vault, prompt, generate,
derive, candidate, literal), field rules matched by id then label, page and
wait steps, five human gates a runner never performs (declare,
identity-proofing, code, mail, captcha), outcomes, the never-retried shared
secret, vault and download outputs, hand-off cards that may name only public
inputs, the publisher index at /.well-known/openerrand.json, and thirteen
runner rules. The worked example is the MyFTB business registration that
cli-tools `ftb` performs (profullstack/cli-tools#125), with no personal data.

- @logicsrc/schemas: openerrand + openerrand-index schemas and fixtures
- @logicsrc/validators: semantic checks (references, templates, no personal
  or secret input on a card) and tests that validate the spec's own examples
- logicsrc-web: registry entry (process family), /openerrand landing page,
  the example and the index served as static files, contract tests

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

* OpenErrand: hand-off cards stay on the surface that owns the data

Anthony's ruling: tax and finance data never touches a social or promotion
tool, and nothing is sent to a CPA or preparer.

- Hand-off cards are delivered only on the surface that owns the errand's
  data (for a tax or finance errand, the principal's finance app through its
  CLI, PWA, MCP server or API, such as CoinPay, or the runner's terminal),
  never a social, promotion or third-party posting service, and never to
  anyone but the principal. A card for an errand with personal or secret
  inputs does not leave that surface. Runner rule 9 says the same.
- The run record and the sample run name the card by an opaque id
  (pin-letter/7f3k2q) instead of a mynaposter.com URL; the myna mention is gone.
- `principal: represented` no longer cites a preparer with a power of attorney.
- The FTB card's last step no longer suggests sending the PIN to someone else.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

* OpenErrand: user-agent rule, captcha solver policy, reference runner note

Anthony's answers on #227 ("go with your recommendations"):

- Rule 11: a runner may run headless with a normal desktop browser user agent
  (dropping HeadlessChrome) and nothing more: no fingerprint spoofing beyond
  the UA string, no stealth plugins, no solving or evading a bot challenge.
  A challenge the browser completes itself is a wait step; any other is a
  captcha gate.
- Captcha solvers: new site.sector and captcha step `solver`
  (forbidden by default | allowed). Never allowed on government, tax,
  financial, healthcare or identity-provider sites, nor on any errand with a
  declare or identity-proofing step or a secret input; elsewhere only when the
  file says so, with every use logged. The validator rejects `allowed` in the
  forbidden set or without a stated sector; six new tests. The FTB example
  states sector "tax".
- Reference runner: @logicsrc/openerrand / `logicsrc errand run`, marked in
  progress; ftb stays the runner the example was taken from.
- Name stays OpenErrand; family stays Agents and process.

Co-Authored-By: Claude Opus 5.5 <noreply@anthropic.com>

---------

Co-authored-by: Claude Opus 5.5 <noreply@anthropic.com>
This commit is contained in:
Anthony Ettinger 2026-10-04 08:57:10 -07:00 • committed by GitHub
parent d38db62e8b
commit 1d69dc3804
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
19 changed files with 2231 additions and 3 deletions

View file

@ -0,0 +1,16 @@
{
"type": "logicsrc.openerrand-index",
"version": "0.1",
"publisher": "https://logicsrc.com/.well-known/openprofile.md",
"updated": "2026-10-04T00:00:00Z",
"errands": [
{
"url": "https://logicsrc.com/examples/openerrand/ftb-register-business.json",
"name": "ftb-register-business",
"site": "https://webapp.ftb.ca.gov",
"title": "Register a MyFTB business account",
"gates": ["declare", "code", "mail"],
"updated": "2026-10-04T00:00:00Z"
}
]
}

View file

@ -0,0 +1,236 @@
{
"type": "logicsrc.openerrand",
"version": "0.1",
"id": "https://logicsrc.com/examples/openerrand/ftb-register-business.json",
"name": "ftb-register-business",
"title": "Register a MyFTB business account",
"description": "Creates a MyFTB account for a California S corporation at the Franchise Tax Board, proving the business with a figure from a filed Form 100S. FTB then mails a PIN; activation is a second errand.",
"publisher": "https://logicsrc.com/.well-known/openprofile.md",
"updated": "2026-10-04T00:00:00Z",
"reference": "https://github.com/profullstack/cli-tools/pull/125",
"principal": "self",
"site": {
"name": "California Franchise Tax Board (MyFTB)",
"sector": "tax",
"origins": ["https://webapp.ftb.ca.gov"],
"start": ["https://webapp.ftb.ca.gov/MyFTBAccess/Registration/NewAccount"]
},
"limits": { "pages": 15, "page_timeout": "PT30S", "same_page": 2 },
"inputs": {
"email": {
"label": "Email address FTB writes to",
"type": "email",
"sensitivity": "personal",
"required": true,
"sources": [{ "from": "prompt" }]
},
"phone": {
"label": "Mobile number FTB texts a verification code to",
"type": "string",
"pattern": "^[0-9]{10}$",
"sensitivity": "personal",
"required": true,
"sources": [{ "from": "prompt" }]
},
"first_name": {
"label": "Representative's first name",
"type": "string",
"max_length": 11,
"sensitivity": "personal",
"sources": [{ "from": "document", "form": "CA 540", "field": "first name", "pick": "newest" }]
},
"last_name": {
"label": "Representative's last name",
"type": "string",
"max_length": 13,
"sensitivity": "personal",
"sources": [{ "from": "document", "form": "CA 540", "field": "last name", "pick": "newest" }]
},
"street": {
"label": "Street address on the newest return",
"type": "string",
"sensitivity": "personal",
"sources": [{ "from": "document", "form": "CA 540", "field": "street address", "pick": "newest" }]
},
"address_numbers": {
"label": "The numbers in the address on file",
"type": "string",
"sensitivity": "personal",
"sources": [{ "from": "derive", "input": "street", "transform": "digits" }]
},
"zip": {
"label": "ZIP code on file",
"type": "string",
"sensitivity": "personal",
"sources": [{ "from": "document", "form": "CA 540", "field": "ZIP code", "pick": "newest", "transform": "first:5" }]
},
"corp_id": {
"label": "California corporation number",
"type": "string",
"sensitivity": "public",
"sources": [{ "from": "document", "form": "CA 100S", "field": "California corporation number", "pick": "newest" }]
},
"tax_year": {
"label": "Tax year of the return the shared secret comes from",
"type": "integer",
"sensitivity": "public",
"sources": [{ "from": "candidate", "input": "net_income", "part": "year" }]
},
"net_income": {
"label": "Net income for tax purposes, whole dollars",
"type": "integer",
"sensitivity": "secret",
"role": "shared-secret",
"sources": [
{ "from": "document", "form": "CA 100S", "field": "line 20", "match": "net income for tax purposes", "years": { "back": 5, "current": false }, "transform": "whole" },
{ "from": "document", "form": "CA 100S", "field": "line 15", "match": "net income \\(loss\\) for state purposes", "years": { "back": 5, "current": false }, "transform": "whole" }
]
},
"username": {
"label": "MyFTB user name",
"type": "string",
"sensitivity": "personal",
"role": "credential",
"sources": [
{ "from": "vault", "key": "FTB_BUSINESS_USERNAME" },
{ "from": "generate", "length": 15, "classes": ["lower", "digit"] }
]
},
"password": {
"label": "MyFTB password",
"type": "string",
"sensitivity": "secret",
"role": "credential",
"sources": [
{ "from": "vault", "key": "FTB_BUSINESS_PASSWORD" },
{ "from": "generate", "length": 24, "classes": ["lower", "upper", "digit", "special"], "special": "!#$*@" }
]
},
"security": {
"label": "Three security questions and their answers",
"type": "qa-set",
"count": 3,
"sensitivity": "secret",
"role": "credential",
"sources": [
{ "from": "vault", "key": "FTB_BUSINESS_SECURITY_ANSWERS" },
{ "from": "generate", "length": 10, "classes": ["lower", "digit"] }
]
}
},
"rules": [
{ "name": "read terms", "id": "^ReadTerms$", "types": ["checkbox"], "do": { "check": true } },
{ "name": "accept terms", "id": "^AcceptTerms$", "types": ["checkbox"], "do": { "check": true } },
{ "name": "first name", "id": "^FstName$", "do": { "text": "{{first_name}}" } },
{ "name": "middle initial", "id": "^MInitial$", "do": { "skip": true } },
{ "name": "last name", "id": "^LstName$", "do": { "text": "{{last_name}}" } },
{ "name": "suffix", "id": "^Sffx$", "do": { "skip": true } },
{ "name": "user name again", "id": "^ReUserName$", "do": { "text": "{{username}}" } },
{ "name": "user name", "id": "^UserName$", "do": { "text": "{{username}}" } },
{ "name": "email again", "id": "^ReEmail$", "do": { "text": "{{email}}" } },
{ "name": "email", "id": "^Email$", "do": { "text": "{{email}}" } },
{ "name": "password again", "id": "^RePassword$", "do": { "text": "{{password}}" } },
{ "name": "password", "id": "^Password$", "do": { "text": "{{password}}" } },
{ "name": "foreign number", "id": "^Phone_Foreign$", "do": { "skip": true } },
{ "name": "foreign address", "id": "^Address_Foreign$|^Address_No(MailAddress|PostalCode)$", "do": { "skip": true } },
{ "name": "security question", "label": "question", "types": ["select-one"], "do": { "choose": "security" } },
{ "name": "security answer", "label": "question|answer", "types": ["text", "password"], "do": { "answer": "security" } },
{ "name": "role", "label": "individual|business representative", "types": ["radio"], "do": { "check": { "label": "^\\s*business representative" } } },
{ "name": "zip", "label": "zip|postal", "types": ["text", "tel", "number"], "do": { "text": "{{zip}}" } },
{ "name": "address numbers", "label": "numbers in (the |your )?(business )?(mailing )?address", "types": ["text", "tel", "number"], "do": { "text": "{{address_numbers}}" } },
{ "name": "tax year", "label": "year (of|on) the tax return|tax year", "types": ["select-one"], "do": { "select": ["^\\s*{{tax_year}}\\s*$"] } },
{ "name": "tax year", "label": "year (of|on) the tax return|tax year", "types": ["text", "tel", "number"], "do": { "text": "{{tax_year}}" } },
{ "name": "net income", "label": "net income|income \\(loss\\)", "types": ["text", "tel", "number"], "do": { "text": "{{net_income}}" } },
{ "name": "company type", "label": "type of company|company type|entity type", "types": ["select-one"], "do": { "select": ["^\\s*corporation\\s*$", "corporation"] } },
{ "name": "account number", "label": "account number|entity id|corporation (id|number)", "types": ["text", "tel", "number"], "do": { "text": "{{corp_id}}" } },
{ "name": "form type", "label": "form type|type of (tax )?(return|form)", "types": ["select-one"], "do": { "select": ["100\\s*S\\b"] } },
{ "name": "declaration", "label": "perjury|i declare|under penalty", "types": ["checkbox"], "do": { "gate": "declaration" } },
{ "name": "phone", "label": "phone number", "types": ["text", "tel", "number"], "do": { "text": "{{phone}}" } },
{ "name": "send a text", "label": "send me a text|text message", "types": ["radio"], "do": { "check": true } },
{ "name": "verification code", "label": "verification code|security code|one[- ]time|passcode|access code|enter (the )?code", "types": ["text", "tel", "number", "password"], "do": { "gate": "text-code" } }
],
"steps": [
{
"id": "bot-check",
"kind": "wait",
"match": { "title": "^Challenge Validation$", "selector": "#sec-cpt-if" },
"timeout": "PT90S",
"poll": "PT3S",
"say": "FTB's bot check is a proof of work the page's own script solves; the runner waits for it."
},
{
"id": "form",
"kind": "page",
"unmatched": "stop",
"say": "Every MyFTB registration page: terms, profile, security questions, role, address, shared secret, phone."
},
{
"id": "declaration",
"kind": "declare",
"statement": "perjury|i declare|under penalty",
"why": "Ticking this box is the representative stating, under penalty of perjury, that what was entered is true. Only that person can make the statement."
},
{
"id": "text-code",
"kind": "code",
"channel": "sms",
"relay": ["terminal", "file"],
"pattern": "^\\w{4,10}$",
"timeout": "PT15M",
"why": "FTB texts a code to the phone number given. Whoever holds the phone reads it out."
},
{
"id": "pin-letter",
"kind": "mail",
"what": "MyFTB PIN letter",
"arrives": "5 to 10 business days, to the address FTB has on file",
"expires": "P21D",
"resume": "ftb-activate-business",
"input": "pin",
"handoff": "pin-letter",
"why": "FTB activates a new account with a PIN it sends by US Mail. Nobody but the addressee can read it."
}
],
"submit": {
"labels": "^(submit|continue|next|log ?in|login|activate|send( code| me a code)?|verify|confirm)$",
"never": "^(back|cancel|end session|previous)$",
"ignore": "#timer, .modal"
},
"outcomes": [
{
"name": "rejected",
"kind": "rejected",
"text": "does not match our records|there is a problem|unable to (verify|process) your|account (is|has been) locked"
},
{
"name": "registered",
"kind": "success",
"text": "registration confirmation|successfully (registered|created)|we will (mail|send) you a (letter|pin)|pin .*(mail|letter)",
"then": "pin-letter"
}
],
"retry": { "shared_secret": "never", "page_errors": "rejected" },
"outputs": {
"vault": {
"when": "registered",
"keys": {
"FTB_BUSINESS_USERNAME": "{{username}}",
"FTB_BUSINESS_PASSWORD": "{{password}}",
"FTB_BUSINESS_EMAIL": "{{email}}",
"FTB_BUSINESS_SECURITY_ANSWERS": "{{security}}"
}
}
},
"handoffs": {
"pin-letter": {
"title": "FTB PIN letter: business MyFTB account",
"open": "https://webapp.ftb.ca.gov/MyFTBAccess/",
"steps": [
"Watch the mail at the address FTB has on file for the MyFTB PIN letter (5 to 10 business days).",
"Activate before {{expires_on}}: the PIN expires 21 days after registration.",
"Run the command below yourself, with the PIN from the letter."
],
"command": "ftb activate business --pin <PIN from the letter>"
}
}
}