Resources
Learn, read, check our trust record, and find the legal terms.
KYE™ Learn™ 10 pages
- AI governanceWhat AI governance is, why AI agents change the question, how the EU AI Act, ISO 42001, SR 11-7, and DORA converge — and how to start. The canonical answer.
- Published ReportsEvery published KYE Protocol™ governed AI research report, on one shelf. Browse and filter by series, format, sector, audience and cadence; search by keyword…
- Authority CourtA courtroom dramatization of Authority Finality™. The defendant is the agent's action, not the agent; the charge is whether the institution's mandate was…
- AI governance (KYE™ Learn™)A pre-deployment checklist for procurement, risk, and engineering. What to verify before agents touch a regulated workflow. Twelve items, each with the failure…
- ISO/IEC 42001The first AI management-system standard. What clauses 4-10 demand of an AI agent operator, where it overlaps ISO 27001, and the cheapest path to certification.
- PodcastsKYE™ Minute: one KYE Protocol™ glossary term in about a minute, with a full transcript and an RSS feed. Episodes are published once podcast audio is switched…
- SR 11-7 for AI agentsThe 2011 Fed model risk guidance is back because agents take actions banks can't unwind. How the three-line model maps, what 'effective challenge' means, where…
- The EU AI Act, explained for AI agentsRisk tiers, prohibited practices, high-risk obligations, GPAI rules — what each means when your AI is an agent that takes actions, not just produces text.
Glossary 191 pages
- Action ApprovalAction Approval: Pre-action human review of an agent’s proposed action.
- ActorActor: The entity actually performing an action.
- Admissibility decision valuesAdmissibility decision values: Six values. admit , reject , require_clarification , require_human_review , quarantine , route_to_authority_check .
- Adoption Evidence Pack™Adoption Evidence Pack™: Signed bundle composing intake + readiness + authority record + gates + commit boundaries + review paths + training + sample runtime…
- Agency Continuity™Agency Continuity™: The protocol-level property that an actor's interpreted goal at decision time matches its declared intent.
- Agent-as-Contracting-PartyAgent-as-Contracting-Party: The legal posture in which an AI agent's authority — the delegation it acts under, the purpose-permission it is scoped to, the…
- AI System Compliance Card™AI System Compliance Card™: The public-key-verifiable nutrition label for any AI system.
- Annex III high-risk system (EU AI Act Art 6)Annex III high-risk system (EU AI Act Art 6): (EU AI Act Art 6)
Blog 9 pages
- A Permit Is Not AuthorityA permit says the action is allowed. Authority says this principal may take it. Where runtime guardrails stop and Authority Finality™ begins.
- A Trace Is Not AuthorityA trace tells you what happened. Authority decides whether it was permitted to. Where agent traces stop and Authority Finality™ begins.
- An API Key Is Not AuthorityA key proves the caller can reach the API; it never proves the caller should have made the call. Where credentials stop and Authority Finality™ begins.
- Decision Provenance Is Not Authority ProvenanceTracing how an AI outcome was produced is not proving the actor was entitled to cause the effect. Where decision provenance stops and Authority Finality™…
- Decision-Admissibility Is Not Action-AuthorityCompiling a clause into code proves the rule is satisfiable — not that anyone may act on it. Where policy-as-code stops and Authority Finality™ begins.
- Identity Is Not AuthorityKnowing who an AI agent is answers the door; it does not decide what the agent may do. Where agent identity stops and Authority Finality™ begins.
- Observability Is Not AuthorityWatching an AI agent act is not the same as deciding it was allowed to. Where observability stops and Authority Finality™ begins.
- Reasoning Control Is Not AuthorityShaping how a model reasons is not deciding whether its conclusion may become an action. Where inference-time control stops and Authority Finality™ begins.
KYE™ Research Library™ 14 pages
- Adaptive AI Governance Needs a Runtime Authority LayerAI governance is converging on a single structural conclusion: written policy and pre-deployment assessment are necessary but not sufficient.
- AI Legal BriefA financial-stability regulator has, in effect, told the market that a paragraph of instructions is not a control — reporting based on publicly available…
- AI Legal Brief (KYE™ Research Library™)A German court has held that an AI provider is responsible for the answers its AI presents, and that the responsibility cannot be shifted to the reader…
- KYE™ Authority Pulse™The KYE™ Authority Pulse™ is the weekly bulletin of what changed inside the KYE Protocol™ canon — new governance chapters, new frameworks under mapping, new…
- KYE™ Governed Proposal Authority™KYE™ Governed Proposal Authority™ turns a SERPRO governed data-query partnership context into a deterministic, fully-cited, replay-sealed proposal.
- Returns to ExpertiseAs agentic tools get better at execution, the durable value moves to judgment — and judgment, made enforceable at the moment of action, is what governance is.
- Roadmap to AI Adoption in HealthcareHealthcare organisations are adopting AI into clinical and operational decisions — triage, diagnosis support, documentation, scheduling, prior authorisation…
- Roadmap to AI Governance for Financial ServicesFinancial institutions are deploying AI into decisions that regulators already supervise — creditworthiness, fraud, market and model risk — faster than their…
Analyst Briefing 7 pages
- Analyst Competitive LandscapeAnalyst competitive-landscape map for Agentic Governance™: how it relates to AI-governance, model-risk, and prompt-firewall categories — complementary inputs…
- Analyst Category DefinitionAnalyst-grade definition of the Agentic Governance™ category: its primitives (act, authority, purpose, scope, evidence), its boundary, and the finality it…
- Analyst Fact SheetAnalyst fact sheet for KYE Protocol™: what Agentic Governance™ ships, which buyers it serves, the frameworks it maps to, and how it proves itself with…
- Open vs ProprietaryMost AI-governance vendors ask you to trust a closed scoring black box. KYE Protocol™ is verifiable: open schemas, an Apache-2.0 OSS surface, and every…
- KYE Protocol™ vs Microsoft’s Agent Governance ToolkitA fair, public-facts comparison: Microsoft’s Agent Governance Toolkit governs how you build governed agents; KYE Protocol™ is the vendor-neutral…
- Independent SignalsVerbatim, attributed quotes from McKinsey, the World Economic Forum, BCG, NIST, Deloitte and independent practitioners — all independently describing the…
- Sales deck (v3.1, 15 slides)Interactive 15-slide sales deck for the KYE Protocol™: the Entity Trust Control Plane for AI-native systems. Runtime Gateway™ answers the seven canonical…
KYE Protocol™ Trust Center 8 pages
- Self-audit fixtureSigned JSON artefacts proving the KYE™ Reference Gateway™ governs and audits itself with its own primitives
- Trust CenterKYE Protocol™ Trust Center — the procurement-grade summary. What is verifiable today (with reproducible commands), what is in progress, what requires…
- Self-GovernanceThe KYE Protocol™ governs itself under its own contract. Every privileged action (CI run, deploy, schema migration, secret rotation, domain binding) emits the…
- KYE™ Authority Risk Register™The board-facing aggregation surface over the audit chain. One row per (subject, gap_class) tuple. Each row binds back to the signed evidence envelope that…
- SecurityKYE Protocol™ responsible-disclosure page. How you report a vulnerability, what the response SLA looks like, and which supply-chain controls run…
- StatusOperational targets KYE Protocol™ services run under. SLA tiers (99.9% / 99.95% / 99.99%), RTO/RPO per component, incident severity (Sev-0 to Sev-3)…
- Status (KYE Protocol™ Trust Center)Operational status of KYE Protocol™: the service components and open incidents, the daily synthetic journeys of this site and the checks of its last build.
- Transparency logKYE Protocol™ publishes its own signed self-governance runs and verifies them against one published Ed25519 key: what is logged, how to verify it offline, and…
Assess and operate 3 pages
- Readiness self-testA 12-question interactive self-assessment that scores your AI-agent stack 0–100 on KYE Protocol™ readiness
- Risk & mitigationThe KYE Protocol™ threat model: signing-key compromise, registry availability, false-positive denials, time-skew, replay, supply-chain risk…
- Quiz60-second interactive quizzes on AI governance, authority risk, and regulator readiness. Get your scorecard, share it, and see the matched KYE Protocol™…
Roadmap and updates 6 pages
- EventsWebinars, workshops, conferences, office hours and governed-research report launches from KYE Protocol™; each one dated entry you can register for.
- ChangelogKYE Protocol™ chronological release notes. v1.0.0 frozen April 2026; rolling v1.0.x patch series; v1.1 preview profiles in flight
- Change CalendarKYE Protocol™ forward-looking change calendar — planned breaking changes, scheduled maintenance, sub-processor change notices, policy revisions. Minimum-notice…
- FAQFrequently asked questions about KYE Protocol™ — Authority Finality™, conformance, deployment, integration, regulation, governance, profiles, roadmap.
- RoadmapKYE Protocol™ roadmap with dated milestones — v1.0 frozen April 2026, v1.0.x patch series, v1.1 preview profiles (Conformance Certification, Authority…
- UpdatesThe KYE Protocol™ updates feed: every rail adopted, event scheduled, certificate program launched, and report published — one canonical feed, generated from…
Press and brand 6 pages
- PressKYE Protocol™ press kit: boilerplate, logo, screenshots, contact for journalists / analysts / partners.
- KYE Protocol™ brand kitThe KYE Protocol™ brand kit: the KYE™ monogram in the rail-and-node frame, the wordmark, colours with their codes, Inter and JetBrains Mono, usage rules and…
- SitemapEvery page on the KYE Protocol™ public site, with a one-line description of each.
- TrademarksCanonical list of KYE Protocol™ trademarks, grouped by category. Every protected mark used across the site, SDKs, and surfaces — single source of truth.
- All pagesEvery page of KYE Protocol™, A to Z by section.
- CataloguesThe KYE Protocol™ catalogues: data classification, commercial, scopes and connectors; the public reference and the console and admin views that hold each one.
Legal 9 pages
- Acceptable Use Policy (v1.0)KYE Protocol™ Acceptable Use Policy. Prohibited uses, prohibited content, automated-behaviour limits, security obligations, abuse reporting, suspension.
- Apache 2.0 LicenceThe public KYE Protocol™ schemas, OpenAPI definitions, examples and SDKs are released under the Apache License 2.0. This page reproduces the full text.
- Data Processing Addendum (v1.0)KYE Protocol™ Data Processing Addendum, GDPR Article 28 compliant. SCCs incorporated, sub-processor list, security measures, data-subject rights…
- Privacy Policy (v1.0)KYE Protocol™ Privacy Policy. Data controller: KYE Protocol Ltd. Data we collect, lawful basis, retention, sub-processors, data subject rights under GDPR…
- Sub-processor list (v1.0)KYE Protocol™ sub-processor list. Cloudflare for hosting, Pages Functions, D1, R2, KV, Workers AI, AI Gateway and Email Routing.
- Terms of Service (v1.0)KYE Protocol™ Terms of Service — minimum-viable B2B SaaS terms for the Audit Pilot program. Governing law: England & Wales. Notices: info@kyeprotocol.com.
- Cookie Policy (v1.0)KYE Protocol™ Cookie Policy. This site sets no first-party cookies and runs no third-party analytics or advertising trackers. Local-storage keys…
- Legal noticesThe notices that apply to KYE Protocol™ material on this site and in our emails: who it is for, and what it is not.
More pages 1 page
- Governed Proposal Authority™KYE™ Governed Proposal Authority™ — the responder/bidder-side companion to the Tender pack. Turn a partner/engagement record into a governed proposal whose…