See agent authority
Understand who or what is acting, what it can do, and what policy applies. The Entity Passport + Authority Scope widgets show every entity's declared scope, active delegations, and trust posture at a glance.
KYE™ GovernedUI™
You see what your agent wants to do. You approve, reject, or edit it. KYE™ GovernedUI™ is your control surface for AI: dashboard, email, Slack, Teams, or mobile.
You learn: What KYE™ decides for each agent action, why (reason code), and who must act. You can: Replay the feed; approve or decline the held decision.
Accounts-payable agent pays a supplier invoice
permission_granted
Pay €412.90 to Paperhouse Supplies (demo), invoice INV-2026-0917
In-appWebhook
Procurement agent orders above its approval threshold
approval_threshold_breach
Order 40 pallets of packaging film from Kilnworks Supplies (demo), £18,400
App pushIn-appWebhook
Clinical summarisation agent asks to read records for marketing
permission_missing
Read 1,200 patient records to build a marketing list (demo)
In-appWebhook
HR operations agent acts on a revoked delegation
delegation_revoked
Change a staff member's contracted hours (demo)
In-appWebhook
Drafting agent prepares a disclosure letter, with redaction
permission_granted
Draft a disclosure letter for matter M-2207 (demo)
In-appWebhook
Credit agent acts outside its jurisdiction
jurisdiction_unsupported
Approve a £4,200 credit line for an applicant in the US (demo)
In-appWebhook
You learn: How it works, one stage at a time. You can: Run it end to end.
Cross-agent handoff with scope attenuation
KYE Protocol™
kye.delegation_chain.v1 + Authority Gate chain-walk guarantee Agent B's authority is always ≤ Agent A's. Visualised in the Authority Scope module.
Authority drift detection
KYE Protocol™
kye-drift-detector Worker emits kye.agency_drift.event.v1 for ten drift dimensions (intent / scope / state / payload / timing / frequency / target / semantic / agency / authority). Surfaced live in the Authority Drift…
PDP / ePDP / sPDP admission
KYE Protocol™
Production deterministic decision engine, p99 ≤ 30 ms. ActionApproval pre-flights every proposal through it.
WORM audit chain
KYE Protocol™
Constitution retention; nine protected tables with append-only triggers. Every approval lands here, single-use enforced.
Replay-proof envelope
KYE Protocol™
Constitution deterministic signature. Any verdict re-derivable offline from public material alone.
Regulator-ready exports
KYE Protocol™
SR 11-7, EU AI Act Art. 14/15, DORA control mappings. compliance-attestation CI gate enforces 8 of 8 regulated rule packs carry mappings.
Every decision lands in a WORM (Write-Once-Read-Many) audit chain. A regulator can replay your verdict offline from the public key alone.
Banking-grade · Replay-proof · Multi-channel · WORM-audited · SR 11-7 (Supervisory Guidance on Model Risk Management) / EU AI Act / DORA-aligned
ActionApproval · kye.governedui.action_proposal.v1 live preview
Customer-Support Agent #A41
kye:agent:acme-bank:support:a41
Action issue_refund
Target system payments.acme-bank.com
Payload £420.00 · cust 8841
Risk level high
Approval mode two_person
Policy decision admit_with_human_approval
Authority chain agent ← ops_lead ← bank
Evidence Timeline · kye.governedui.evidence_timeline.v1 replay-proof
Proposed by agent
2026-05-19T10:42:18Z
sig: ed25519:<signed>
Authority chain walked
delegation_depth=2 · scope_ok
Policy evaluated (PDP)
verdict=admit_with_human_approval · p99=22ms
Human approval — awaiting
required: 2 approvers (two_person mode)
Executed or blocked
target=payments.acme-bank.com
Audit sealed (WORM)
retention=7y · replay-proof
The product focuses on dangerous moments — not normal UI activity. Twenty critical-action classes, every one a moment where uncontrolled AI execution costs an enterprise meaningful money, regulatory exposure, or customer trust:
send_email · send_message · delete_file · export_data · access_sensitive_dataupdate_crm · issue_refund · create_invoice · submit_form · deploy_codeswitch_traffic · run_sql · modify_policy · approve_workflow · share_documentcall_paid_api · trigger_payment · change_customer_recorddelegate_authority · modify_own_authority (meta-governance — )Every class triggers a signed, replay-proof approval flow with full audit lineage. Locked in the seven governance modules.
Understand who or what is acting, what it can do, and what policy applies. The Entity Passport + Authority Scope widgets show every entity's declared scope, active delegations, and trust posture at a glance.
Approve, reject, edit, escalate, or require second approval before execution. ActionApproval and Critical Point Review widgets gate every consequential moment with policy-aware human review — from any channel: dashboard, email, Slack, Teams, mobile.
Replay-proof evidence timelines for every action, policy decision, approval, and outcome. A regulator with the timeline + the public verification key can re-derive every verdict offline — SCITT-receipt equivalent.
| KYE Protocol™ | KYE™ GovernedUI™ |
|---|---|
| Governance brain | Visible control surface |
| Identity, authority, policy, audit | Approval, evidence, review, accountability |
/v1/* API + Decision Map™ | Widgets + dashboards + multi-channel approvals |
| Replay-proof envelopes | The human decisions that produce the envelopes |
| PDP / ePDP / sPDP admission | The UI that surfaces the PDP's policy decision to a human |
kye.delegation_chain.v1 + Authority Gate chain-walk guarantee Agent B's authority is always ≤ Agent A's. Visualised in the Authority Scope module.kye-drift-detector Worker emits kye.agency_drift.event.v1 for ten drift dimensions (intent / scope / state / payload / timing / frequency / target / semantic / agency / authority). Surfaced live in the Authority Drift module.compliance-attestation CI gate enforces 8 of 8 regulated rule packs carry mappings.Canonical KYE™ surfaces referenced on this page: KYE Protocol™.