Feature complete
End of Day 5. Register, contextualize, classify, bound, assure, authorize, monitor change, explain posture, and report — using existing Forge records.
Dashboard / AI Governance
Forge Comply · ForgeComply360
In progress · Days 1–2 merged · Day 3 next
A native operating capability inside Forge Comply. It governs AI systems from inventory through continuous assurance by extending the existing platform, not by standing up a separate GRC stack.
/projects/ai-governance/
Plan of record dated October 6, 2026. The live ForgeComply360 repository remains authoritative for migrations, APIs, feature flags, and security behavior. This page records the program model and release criteria.
aiGovernance is off by default and is enabled deliberately for a Beta tenant.6e29cbe8f360b296a00488e4628458cec7689832 at the October 6 snapshot.Working authority. Do not treat this portal as a substitute for the repository. Rebaseline each day from current main.
Each day has an implementation gate and a merge gate. The next day starts from clean current main, never from the previous feature branch.
| Day | Status | Title | Exit condition |
|---|---|---|---|
| 1 | Merged | Architecture freeze + Forge Trust Graph | Context and dependency foundation merged. PR #1250. Migration migrate-252-ai-trust-graph. |
| 2 | Merged | Classification + Governance Profile + Control Envelope | Deterministic governance treatment and boundaries merged. PR #1252. Migration migrate-253-ai-governance-classification-envelope. Classifier ai-gov-classify-v1. |
| 3 | Next | Assurance lifecycle + GRC integration + validation | ASSURE stage works using real Forge GRC records. No AI-specific shadow engines. |
| 4 | Planned | Operational authorization + material change + continuous assurance | Human authorization and the continuous reassessment loop work. |
| 5 | Planned | Trust Posture + Command Center + reports | Feature complete. |
| 6 | Planned | Beta integration + golden customer simulation | Beta integrated through the BETA-AI-001 journey. |
| 7 | Planned | Beta certification + demo + release | Beta certified. Final GO / NO-GO issued. |
End of Day 5. Register, contextualize, classify, bound, assure, authorize, monitor change, explain posture, and report — using existing Forge records.
End of Day 7. Golden scenario, tenant and business-unit isolation, RBAC, separation of duties, feedback instruments, security regression, and a demo package.
Lifecycle through ASSURE and AUTHORIZATION_REQUIRED. Link real risks, controls, evidence, findings, and POA&M. Ready for authorization review is a readiness state only.
Selective operating model: one reusable assurance pattern. AI Governance is its first explicit application.
| Stage | Purpose | Built in |
|---|---|---|
| Register | Know what AI exists and who owns it. | Existing AI Registry |
| Contextualize | Understand dependencies, data, people, and environment. | Day 1 · merged |
| Classify | Determine governance treatment. | Day 2 · merged |
| Bound | Define the maximum acceptable operating boundary. | Day 2 · merged |
| Assure | Prove required controls and validations. | Day 3 · next |
| Authorize | Human decision to permit operation. | Day 4 |
| Operate | Run only inside approved runtime boundaries. | Existing runtime safety |
| Observe | Collect operating facts. | Day 4 |
| Adapt | Evaluate material change and reassessment. | Day 4 |
| Improve / Retire | Remediate or responsibly retire. | Days 3–4 |
Hard-gate principle. Hard governance gates override aggregate percentages and maturity scores. A failed human-oversight or prohibited-autonomy condition cannot be offset by other high indicators.
System of record for inventory, Trust Graph, profiles, envelopes, risk, evidence, findings, authorization, material change, and reports.
Standards, methods, training, and reference patterns. It must not overwrite customer governance state, grant runtime authority, accept risk, or authorize an AI system.
ITIL AI Governance, NIST AI RMF, EU AI Act, 800-53, and ISO mappings are inputs. No mapping grants operational authority or marks compliance by itself.
The envelope can only maintain or lower authority. It cannot increase autonomy, add tool scopes, activate capability packs, bypass MCP controls, or authorize operation. Enforcement is deny-only and off unless AI_CONTROL_ENVELOPE_ENFORCEMENT is enabled. Agent autonomy maximum remains 2. Level 5 autonomy stays banned.
Envelope facets recorded on October 6: identity verified in preflight; action/autonomy deny-only when the flag is on; termination partial by reference to existing switches; data, knowledge, model, tool, financial, human approval, time, and escalation still declared only.
All twelve categories must pass for a GO decision on Day 7.
BETA-AI-001, Enterprise / Healthcare AI Assistant, exercises the full Forge lifecycle without a real customer environment. Most validations pass. A tool-permission validation fails and becomes a real finding. Authorization is Authorized With Conditions or Limited Pilot. A later model or tool change triggers impact analysis and revalidation.
Security rule. No agent, model, or service actor can issue authoritative operational authorization. Trust Graph relationships are descriptive facts and never runtime permission.
Companion architecture and implementation runbook prepared October 6, 2026 for a native CanaPoint AI Assurance layer in the existing ForgeComply360 / CanaPoint application. It is a separate phase sequence from the seven-day governance sprint above. AI may analyze, recommend, draft, and explain. Authoritative state changes stay with deterministic CanaPoint services and authorized humans.
Architecture freeze and threat model. Docs only. No runtime code, migration, or new Cloudflare resources. This is the required starting point.
AI Gateway, model broker, fail-closed policy, and provenance tables. No business use cases yet.
Authorized retrieval. Organization and system scope come from the session. Cross-tenant retrieval must fail.
Evidence Intelligence. Structured, cited, reviewable analysis. No control-status writes.
Control Assessment Assistant. Reviewer acceptance uses the existing authorized write path.
Risk Intelligence. Official scores stay deterministic. Accept Risk remains a human action.
Governed report narratives over verified facts and snapshots. No raw query authority for the model.
Evaluation, adversarial tests, and beta certification on an exact SHA. Any failed P0 tenant, authorization, provenance, citation, or mutation case blocks beta.
Federal path. Keep a provider abstraction for a later GovCloud runtime. Do not provision that path as part of this portal or as unpaid preparation. A federal profile must fail closed if a commercial AI endpoint is configured.