Skip to main content

Inventory Record

Operating · Inventory · Obligation map →

Every in-production agent, copilot, or model-backed workflow gets a row before it can cause a side effect. The row is the approve step on the control path. It is not the route table and not the PEP.

THE CLAIM

No inventory, no owner, no go-live. Ethics slides and a policy PDF do not substitute for a named use case with an accountable owner.

What the row owns

OwnsDoes not own
Use-case id, name, owner, sponsorRoute route_id (Agents)
Autonomy pattern (0-3), data class, regionTool schemas (manifests)
Go-live state: proposed / approved / live / retiredALLOW / DENY / STEP_UP (Runtime)
Link to obligation map and evidence packPEP implementation

Minimum fields

FieldWhy
use_case_idStable id for audit and KRIs
nameHuman label (refund agent, contract review)
ownerNamed accountable human or team
exec_sponsorWho accepted residual risk
pattern0-3 from the Agents Blueprint
data_classWhat the runtime and model gateway may see
region / residencyWhere inference and logs may live
statusproposed / approved / live / retired
runtime_profilePointer to policy profile / PEP surface
evidence_pack_idLink to the go-live pack

Do not store entitlements per user here. Claims stay on the IdP. Do not store tool lists here. Those live on the manifest.

Failure classes

  • Agent in production with no row
  • Owner is a shared mailbox with no named human
  • Status live with empty evidence pack
  • Row exists; route table and PEP never linked

Trace / register fields

use_case_id, owner, status, pattern, data_class, evidence_pack_id, approved_at

Blueprint: Operating. Runtime after approve: Runtime playbooks.

Obligation-to-control map →