All twelve specs
An exploratory map of the same 12 specs below. Click a vertical to filter both. Tab through with a keyboard; Enter/Space activates a node like a click.
| Spec | What it declares | Detect via | Well-known path |
|---|---|---|---|
| AEO Protocol | Entity declaration · authoritative claims · citation preferences | aeo_version |
/.well-known/aeo.json |
| Prompt Provenance | Versioned, lineaged, reviewable LLM prompt records | provenance_version |
— |
| Agent Cards | Declarative agent capability + refusal disclosure | agent_card_version |
/.well-known/agents/<id>.json |
| AI Evidence Format | Structured citations for LLM-generated claims | evidence_version |
— |
| MCP Tool Cards | Per-tool disclosure for MCP servers | tool_card_version |
/.well-known/mcp-tools/<name>.json |
| AI Tutor Cards EdTech | EdTech vendor-side · pedagogy · FERPA/COPPA/GDPR posture | tutor_card_version |
/.well-known/tutors/<id>.json |
| Student AI Disclosure EdTech | Student-side · roles · prompt evidence · artifact-hash binding | disclosure_version |
— (travels with artifact) |
| Classroom AI AUP EdTech | District / school / course AI policy | aup_version |
/.well-known/ai-aup.json |
| Clinical AI Disclosure HealthTech | HIPAA / FDA / SaMD posture · bias audits · EHR integration | clinical_ai_card_version |
/.well-known/clinical-ai/<id>.json |
| AI Incident Card cross-cutting · vendor-side | "CVE for AI agents" · references every other document | incident_card_version |
/.well-known/ai-incidents/<id>.json |
| AI Procurement Decision Card cross-cutting · buyer-side | Buyer's procurement review outcome · documents reviewed · conditions · rationale · v0.2 adds data_vault_targets[] (Skyyflow-shaped field-level vault contract) powering rag-sentinel, deal-desk-workspace, kg-skyyflow-klaviyo-bridge, and the bridge console · v0.3 adds retention_envelope[] — per-field TTL + redaction action + ed25519-signed deletion-proof endpoint |
decision_card_version |
/.well-known/decisions/<id>.json |
| AI Claims Decision Card InsurTech · insurer-side | Insurer/adjudicator record that an AI system decided an insurance claim · outcome · underwriting rules applied · content-hashed evidence bundle · human-in-loop · ed25519-signed, hash-chained | claims_card_version |
— (document-embedded) |
NIST AI RMF crosswalk
Federal and enterprise procurement teams operating under OMB Memorandum M-24-10 can use this crosswalk to map every Suite spec — and the open-source implementation stack — to specific NIST AI RMF subcategories. The AI Procurement Decision Card (spec #11) is the natural carrier for RMF-aligned procurement outcomes — its criteria.rubric field can record per-subcategory pass / partial / fail results for any vendor review.
The 3 real mappings named in Crosswalk v0.2 §7 — tab, click, or hover a node for the detail.
criteria.rubric field records the outcome.
1 policy-as-code-engine → MANAGE 1.3 · 2 audit-stream-py → GOVERN 1.5 · 3 aeo-validator-service → MEASURE 3.1 · 4 slo-budget-tracker → MEASURE 3.1