Mapping between architecture boxes and governance artifacts (policy, standards, procedures, records).
| Diagram box | Policies | Standards | Procedures | Records |
|---|---|---|---|---|
| 1. Consumer Zone | AI Access Governance Policy | AI Access Control Standard | Register consumer/agent; grant access | Consumer Record; Agent Record; Identity Record |
| 2. Edge & Transport Security | AI Security & Abuse Prevention Policy | Edge/Transport Security Standard | Approve ingress; configure TLS/WAF | Network Route Record; Endpoint Record |
| 3. AI Gateway & Control Plane | AI Platform Governance; AI Access Governance | AI Gateway Standard; Model Governance Standard | Register model route; assign quotas | Model Route Record; Entitlement Record; Quota/Budget Record |
| 4. Prompt, Data & Output Governance | AI Data Protection; AI Output & Human Oversight | Prompt/Instruction/Output Governance; AI Data Use | Review prompt; classify data; configure output checks | Prompt Record; Data Classification Record; Output Rule Record |
| 5. AI Runtime & Execution | AI Model & Agent Usage Policy | Agent Runtime; AI Evaluation & Release | Deploy agent; run evaluations; promote | Agent Runtime Record; Evaluation Record; Release Record |
| 6. Resource / Knowledge / Backend Systems | AI Tool & Action; AI Data Protection | AI Tool Exposure; MCP Server; Knowledge & Semantic Grounding | Register tool/MCP server; approve RAG/ontology | Tool Record; MCP Server Record; Knowledge Source Record |
| Policy / Control Plane | All AI governance policies | Registry and release gate standards | Approve use case/model/tool/agent | Policy Record; Approval Record; Registry records |
| Observability / Audit | AI Observability & Audit Policy | Observability & Evidence Standard | Monitor; investigate; report | Telemetry Schema; Audit Evidence Record; Incident Record |