Japan

Runtime authority for Japanese sovereign AI.

When the PPC asks how personal information was handled by an automated system under the APPI, when the FSA asks who was accountable for an AI-driven financial decision and how it was reached, when the PMDA asks for the change-control and post-market evidence behind AI-enabled medical-device software — KYE Protocol answers from a record sealed at the moment of action. Replayable from the publishing tenant's JWKS alone. No vendor dependency in the audit path.

Japanese frameworks mapped to KYE

Per-requirement bijection — not a slide deck.

APPI — Act on the Protection of Personal Information

Japan's federal data-protection law, supervised by the Personal Information Protection Commission (PPC). Purpose-of-use limitation maps to Purpose Permission; security control measures to Authority Resolution + the Data Classification Engine; cross-border transfer and disclosure/access rights to the Cross-Border Evidence agent, Decision Map and Replay-Proof. Each obligation is a per-requirement bijection row.

FSA AI / model-governance expectations

The Financial Services Agency's AI governance and model-risk expectations for financial institutions. Accountability maps to Purpose Permission; model risk to the Risk Engine, Conformance Runner and Drift Detector; human oversight to GovernedUI; explainability to the Decision Map and Evidence Pack. Each expectation is a per-requirement bijection row.

PMDA Software-as-a-Medical-Device pathway

The PMDA's SaMD review pathway under the PMD Act, including the two-step (DASH) approval scheme. Quality-management-system evidence and clinical-evaluation provenance map to the WORM audit + Evidence Pack; change control to the Conformance Runner + Drift Detector; human oversight to GovernedUI. Device classification and marketing approval remain the manufacturer's submission.

Japan-sovereign deployment

Japanese data, Japanese keys, Japanese control.

  • Data residency — deploy to Japanese-region edge runtime resources; per-tenant configurable; structured datastore + object store pinned to Japan.
  • Customer KMS — signing keys live in the customer's HSM or sovereign-cloud KMS; KYE never has access to the private key material.
  • Open verifier — the PPC, the FSA, the PMDA and the customer's own auditors can replay an Evidence Pack using only the publisher's JWKS. No vendor dependency in the audit path.
  • Apache 2.0 schemas + vocabulary — the contracts the customer relies on are open. The patent-track runtime construction is paid; the proof formats are not.
Japanese pilot · 6 weeks

KYE Japanese Readiness Pilot™.

Japanese banks, insurers, asset managers, medical-device manufacturers and AI-deploying enterprises: a 6-week shadow-mode engagement producing APPI personal-data handling evidence per assertion, FSA AI-governance and model-risk coverage, PMDA SaMD change-control and post-market evidence where applicable, signed Evidence Packs per decision, and a regulator-ready executive summary with a residual-risk register.

{BLOCK} {BLOCK}

Independent — no government affiliation. KYE Protocol™ is an independent protocol and is not affiliated with, endorsed by, or part of any government, regulator, or official “Sovereign AI” programme. References to regulators and frameworks describe the requirements KYE™ helps you evidence — not any official relationship.