import { snapshot } from "./codex-hook-trust-files.js"; type Snapshot = ReturnType; export interface NativeHookAdditionsRecovery { path: string; reviewedPlanDigest?: string; } /** Internal capability, not a caller-supplied config override. */ export interface ReviewedNativeHookAdditions { readonly reviewSha256: string; } type JournalHook = { key: string; currentHash: string; }; type TrustState = Readonly<{ trusted_hash: string; enabled?: true; }>; type AddedTrustState = Readonly<{ key: string; state: TrustState; }>; /** Rebind the proof to this exact journal transition and recheck every source. * A serialized/cloned receipt can never create a discovery exception. */ export declare function readReviewedAdditionTrustStates(proof: ReviewedNativeHookAdditions, before: Snapshot, current: Snapshot, journalHooks: JournalHook[]): readonly AddedTrustState[]; /** An explicit, private review of a later producer's append-only hook change. * The producer backups must themselves describe exactly the completed journal * operation. Neither a claimed receipt nor a matching raw hash grants authority * to replace an original hook or accept unrelated configuration changes. */ export declare function reviewNativeHookAdditions(options: { path: string; intent: Snapshot; policy: Snapshot; configBefore: Snapshot; configCurrent: Snapshot; hooksBefore: Snapshot; hooksCurrent: Snapshot; nativeHooksPath: string; journalHooks: Array<{ key: string; currentHash: string; }>; recordedNativeHooks: any[]; }): { hooks: any[]; recheck: () => void; trustProof: ReviewedNativeHookAdditions; receipt: { reviewPath: string; reviewSha256: string; reason: string; producerEvidence: string; producerBefore: { configPath: string; configSha256: string; hooksPath: string; hooksSha256: string; }; additions: any; version?: number | undefined; }; }; export {};