Valid-looking JSON can still paint nothing
Schema shape alone does not prove that representative frames contain visible pixels in a real player.
Prompt or recipe in. Five production artifacts—or a structured failure—out.
A provider-neutral prompt-to-Lottie pipeline where agents can own the attempt, but deterministic evidence owns the release.


The reliability gap
The pipeline started from a blunt observation: an agent can produce convincing source and a nice first preview while still handing engineering an artifact that is inaccessible, environment-dependent, visually empty, or impossible to audit.
Schema shape alone does not prove that representative frames contain visible pixels in a real player.
Expressions, external assets, remote fonts, and unsupported layer types may work in one environment and fail in the target runtime.
Production needs reduced-motion fallback, review surface, provenance, hashes, and an all-or-nothing release boundary—not one loose JSON file.
Product judgment
MotionProof does not care which intelligence proposed the animation. It cares whether the artifact survives the same deterministic production contract.
A deterministic recipe, coding agent, model, human, or imported Lottie candidate enters through the same portable request contract.
Strict structure, vector-only content, quality, real Chromium frames, meaningful motion, payload, and poster checks run outside the provider.
Only a passing candidate becomes one atomic bundle with animation, poster, preview, certification, manifest, hashes, and provenance.
“An agent may own the attempt. It does not own the definition of done.”
Release proof
The complete release gate rebuilds deterministic assets, tests the contracts, renders the production library, packs the npm distribution, installs it in a clean consumer, creates a real bundle, and completes an MCP handshake.
52
Automated tests across generation, certification, packaging, MCP, and runtime policy
27/27
Production Lotties strict-valid and visibly rendered in Chromium
5
Hashed artifacts promoted together in every certified bundle
Reproduce the release decision
npm ci
npm run check:releaseEvidence summary
The role, enforced constraints, product judgment, and reproducible release evidence behind the public build.
Drop-in surfaces
The compiler surface stays small enough for a host application to own its provider, credentials, billing, and model policy. MotionProof owns only the portable request, proof, and artifact boundaries.
Applications bring any provider through one small interface.
Humans and coding agents get stable stdout, exit codes, and structured failure.
Three tools expose creation, certification, and recipe discovery.
One portable workflow teaches compatible hosts the same definition of done.
Artifact contract
Every certified result carries the runtime asset, accessibility fallback, review surface, machine-readable proof, and release provenance together.
Open-core choice
The SDK, CLI, MCP server, Agent Skill, plugins, deterministic recipes, certifier, and local studio ship under the recipient's choice of MIT or Apache-2.0—including commercial use.
If the project gains traction, revenue can come from separately distributed recipe packs, hosted collaboration, private brand systems, team governance, support, and OEM implementation. Released open-core rights do not move backward.
My role
I set the product bar, chose the provider-neutral and fail-closed architecture, directed the agent-assisted implementation, and held the result to a public, reproducible release gate. The point was not to hide the agents. It was to prove that agent-built software can still have a legible owner, explicit judgment, and evidence strong enough for someone else to trust.