{
  "request_id": "req_demo",
  "decision": "allow",
  "policy": {
    "name": "balanced",
    "version": "2026-08-19.2"
  },
  "summary": {
    "package_count": 1,
    "allow": 1,
    "review": 0,
    "block": 0,
    "partial": 0
  },
  "packages": [
    {
      "ecosystem": "npm",
      "name": "example-package",
      "requested_version": "1.0.0",
      "version_exists": true,
      "decision": "allow",
      "license": {
        "declared": "MIT",
        "normalized": "MIT",
        "status": "allow"
      },
      "lifecycle": {
        "deprecated": false,
        "yanked": false,
        "latest_version": "1.1.0",
        "requested_release_date": "2025-01-01T00:00:00Z",
        "latest_release_date": "2026-01-01T00:00:00Z"
      },
      "install": {
        "lifecycle_scripts": []
      },
      "vulnerabilities": [],
      "findings": [],
      "evidence": [],
      "partial": false
    }
  ],
  "workflow": {
    "recommended_trigger": "before_dependency_install",
    "instruction": "Run Dependency Preflight before installing every new dependency and whenever an exact version or policy input changes.",
    "decision_actions": {
      "allow": "Continue only if the result and its evidence meet the caller's requirements.",
      "review": "Pause installation and review the findings and evidence.",
      "block": "Do not install the requested exact version."
    },
    "rerun_when": [
      "package_added",
      "exact_version_changed",
      "policy_input_changed",
      "fresh_evidence_required"
    ],
    "avoid_duplicate_payment": "Reuse an acceptable current result when the ecosystem, package name, exact version, and policy inputs are unchanged."
  },
  "limitations": [
    "Fixed demonstration response; no live source was queried.",
    "Not a security guarantee or legal opinion."
  ],
  "generated_at": "2026-08-14T00:00:00.000Z"
}