Evidence-first • Fail-closed • Audit-grade

Decision before action.
Proof before impact.

For consequential AI, action requires signed public state, local verification, and independent replay.

Signed state inPolicy gatePASS / HOLD / FAIL out

When proof is incomplete, action stays locked before impact.

PROD is the canonical public rail. Demo and candidate rails are secondary.

Why reviewers trust this

One signed production pointer. Local verification. Independent replay. Missing proof stays HOLD.

Canonical production pointerLocal verificationMissing proof = HOLD

Current public decision state

The current public HOLD is frozen as a witness pack. Independent replay will confirm the same signed bundle and reason path when it lands.

Signed receipt SIGNED
Policy pack MATCH
Independent replay PENDING
POLICY GATE
HOLD H-203

Current public HOLD

Independent replay pending — decision preserved

REVIEW REPLAY

Inspect state, verdict, and reason path

What is licensed

Control logic · Conformance packs · Verifier workflows.

Explore licensing

WHY THE BOUNDARY MATTERS NOW

Pressure is building on the same rail.

Review windows are shrinking. Capability does not reliably predict control. High-stakes autonomy is moving into production. Evidence has to arrive where action happens.

Signals synthesized across the Why now page and external corroboration. The operating conclusion is unchanged: more capability still needs explicit boundaries and portable proof.

NON-NEGOTIABLES

When proof fails, action pauses.

Determinism, replayable receipts, and fail-closed control are the minimum credible baseline.

Stable reason codes

PASS / FAIL / HOLD with deterministic semantics.

Replayable receipts

Portable evidence another institution can inspect.

Non-bypassable gates

Control at egress, dispatch, promotion, and other real action surfaces.

GOVERNANCE ARC

Accountability sits above the same rail.

Consequence is set before action. The boundary enforces policy. Review is replayable. Accountability is recorded as reason-coded receipts.

WHY WE EXIST

Protect the person downstream.

When systems decide access, work, care, or safety, consequential outcomes should carry reviewable proof.

Stewardship, not spectacle.