Content type: Article
31 pages. Search every page with Ctrl K, or open the menu.
The platform 1 page
- Whitepaper v1.0The KYE Protocol™ whitepaper: an open contract for identity, authority and audit across humans, businesses, AI agents, services, models and workflows
Resources 30 pages
- Published ReportsEvery published KYE Protocol™ governed AI research report, on one shelf. Browse and filter by series, format, sector, audience and cadence; search by keyword…
- A Permit Is Not AuthorityA permit says the action is allowed. Authority says this principal may take it. Where runtime guardrails stop and Authority Finality™ begins.
- A Trace Is Not AuthorityA trace tells you what happened. Authority decides whether it was permitted to. Where agent traces stop and Authority Finality™ begins.
- Adaptive AI Governance Needs a Runtime Authority LayerAI governance is converging on a single structural conclusion: written policy and pre-deployment assessment are necessary but not sufficient.
- AI governance (KYE™ Learn™)A pre-deployment checklist for procurement, risk, and engineering. What to verify before agents touch a regulated workflow. Twelve items, each with the failure…
- AI Legal BriefA financial-stability regulator has, in effect, told the market that a paragraph of instructions is not a control — reporting based on publicly available…
- AI Legal Brief (KYE™ Research Library™)A German court has held that an AI provider is responsible for the answers its AI presents, and that the responsibility cannot be shifted to the reader…
- An API Key Is Not AuthorityA key proves the caller can reach the API; it never proves the caller should have made the call. Where credentials stop and Authority Finality™ begins.
- Decision Provenance Is Not Authority ProvenanceTracing how an AI outcome was produced is not proving the actor was entitled to cause the effect. Where decision provenance stops and Authority Finality™…
- Decision-Admissibility Is Not Action-AuthorityCompiling a clause into code proves the rule is satisfiable — not that anyone may act on it. Where policy-as-code stops and Authority Finality™ begins.
- Identity Is Not AuthorityKnowing who an AI agent is answers the door; it does not decide what the agent may do. Where agent identity stops and Authority Finality™ begins.
- ISO/IEC 42001The first AI management-system standard. What clauses 4-10 demand of an AI agent operator, where it overlaps ISO 27001, and the cheapest path to certification.
- KYE™ Authority Pulse™The KYE™ Authority Pulse™ is the weekly bulletin of what changed inside the KYE Protocol™ canon — new governance chapters, new frameworks under mapping, new…
- KYE™ Governed Proposal Authority™KYE™ Governed Proposal Authority™ turns a SERPRO governed data-query partnership context into a deterministic, fully-cited, replay-sealed proposal.
- Observability Is Not AuthorityWatching an AI agent act is not the same as deciding it was allowed to. Where observability stops and Authority Finality™ begins.
- Reasoning Control Is Not AuthorityShaping how a model reasons is not deciding whether its conclusion may become an action. Where inference-time control stops and Authority Finality™ begins.
- Returns to ExpertiseAs agentic tools get better at execution, the durable value moves to judgment — and judgment, made enforceable at the moment of action, is what governance is.
- Roadmap to AI Adoption in HealthcareHealthcare organisations are adopting AI into clinical and operational decisions — triage, diagnosis support, documentation, scheduling, prior authorisation…
- Roadmap to AI Governance for Financial ServicesFinancial institutions are deploying AI into decisions that regulators already supervise — creditworthiness, fraud, market and model risk — faster than their…
- Securing enterprise AI agentsThe industry now agrees on how to secure an enterprise AI agent — and that agreement stops one layer short of authority.
- SR 11-7 for AI agentsThe 2011 Fed model risk guidance is back because agents take actions banks can't unwind. How the three-line model maps, what 'effective challenge' means, where…
- The Agent on TrialA successful AI-agent action is not a legitimate one. Put the action on the stand and ask the one charge a dashboard never answers — was it authorised? The…
- The authority that outlived its purposeThe loudest AI-governance fear is the rogue agent.
- The EU AI Act, explained for AI agentsRisk tiers, prohibited practices, high-risk obligations, GPAI rules — what each means when your AI is an agent that takes actions, not just produces text.
- The noyb questionDigital-rights enforcement has moved from "do you have a privacy policy?" to "prove what happened" — and most organisations cannot answer at execution time.
- The ROI of Governed AI ActionThe return on AI is no longer in doubt — and that is precisely why governance is now the constraint that matters.
- The Say-Do Gap in AI GovernanceThere is a measurable gap between what organisations say about their AI governance and what they can actually prove — and that gap is invisible until the first…
- Turncoat agentsThe headline insider threat of 2026 is not a disgruntled employee — it is an AI agent that was manipulated into turning against the organisation that runs it.
- Who's in AI governanceCompliance suites, AI-risk newcomers, model-eval platforms, agent-governance specialists — who does what, what KYE Protocol™ does differently, and how to pick.
- Glossary (Glossary)Canonical AI governance glossary — definitions for AI governance, delegated authority, Purpose Permission™, evidence pack, Replay-Proof™, authority gap, and…