Governance-as-Code for AI agents. Declarative constraints with deterministic enforcement. Provisioning Identity, Tool-based rules, Brokering Credentials & Ensuring safe deployment
-
Updated
Jul 21, 2026 - Go
Governance-as-Code for AI agents. Declarative constraints with deterministic enforcement. Provisioning Identity, Tool-based rules, Brokering Credentials & Ensuring safe deployment
This Bicep module helps to automate resource name generation following the recommended naming convention and abbreviations for Azure resource types.
Single-file Claude Skill for spec-driven RE. Generates constitution, specs, plans, research, tasks — with automatic KRITIS/NIS2 compliance checks and cross-artifact consistency analysis.
Source Governance for OpenTelemetry: Policy-based Sampling
This GitHub repository shows data collection and analysis for “Regulatory Fragmentation” paper by Kalmenovitz, Lowry and Volkova, The Journal of Finance (Forthcoming)
Atlas is a transport-protcol-agnostic P2P decentralized publishing and discovery protocol where users own their data and govern it to converge into structured, interoperable databases, empowering users and developers.
Lean governance for AI-assisted development: requirements tracking, test enforcement, epistemic context compression, auditable evidence, Grace local REPL, and coding-agent integrations.
Human-in-the-loop governance middleware preventing AI hallucination at the Git level.
GovSCH is an Open-Source Schema for Authoring Cybersecurity & AI Governance Documents
Document Context Protocol (DCP)
An open-source modeling language and static risk scanner for secure AI agents, MCP servers, and A2A integrations. Model agent boundaries before they act.
Zero-trust security and governance framework for autonomous multi-agent AI networks. Implements the CSA Agentic Trust Framework to mitigate OWASP Top 10 Agentic Risks using SPIFFE/SPIRE identities, OPA/Rego policy-as-code, and semantic guardrail gateways.
GRC, Compliance, ISO27001, SOC2, NIST-CSF, AI-Governance, ISO 42001, EU-AI-Act, DevSecOps, Risk-Management, Security-Automation
🚀🛡️ Enterprise governance framework designed to reduce operational risk, governance drift, audit exposure, and recovery time through AI governance, HITL/HOTL controls, auditable decision trails, and evidence-driven operations.
[L1 GOVERNANCE] AAA — Surface layer: cockpit, A2A gateway, agent identity. Routes and displays, never adjudicates.
AI-powered code refactoring assistant: A bot that automatically suggests and applies code refactors based on best practices and performance improvements.
Governance-as-Code reference architecture for regulated MCP and agentic AI systems, with auditable workflows, human oversight and compliance-first controls.
Companion reference implementation for the Executable Trust research paper, demonstrating executable trust contracts, runtime governance, and reproducible evaluation for enterprise AI.
It is a defensive runtime and language stack where execution, side effects, policy, proof, authority, audit, mutation, symbolic constraints, and build outputs are treated as governable surfaces.
Add a description, image, and links to the governance-as-code topic page so that developers can more easily learn about it.
To associate your repository with the governance-as-code topic, visit your repo's landing page and select "manage topics."