02 · Specifications
All twelve specs
Filter by vertical
| Spec | What it declares | Detect via | Well-known path |
|---|---|---|---|
| AEO Protocol | Entity declaration · authoritative claims · citation preferences | aeo_version |
/.well-known/aeo.json |
| Prompt Provenance | Versioned, lineaged, reviewable LLM prompt records | provenance_version |
— |
| Agent Cards | Declarative agent capability + refusal disclosure | agent_card_version |
/.well-known/agents/<id>.json |
| AI Evidence Format | Structured citations for LLM-generated claims | evidence_version |
— |
| MCP Tool Cards | Per-tool disclosure for MCP servers | tool_card_version |
/.well-known/mcp-tools/<name>.json |
| AI Tutor Cards EdTech | EdTech vendor-side · pedagogy · FERPA/COPPA/GDPR posture | tutor_card_version |
/.well-known/tutors/<id>.json |
| Student AI Disclosure EdTech | Student-side · roles · prompt evidence · artifact-hash binding | disclosure_version |
— (travels with artifact) |
| Classroom AI AUP EdTech | District / school / course AI policy | aup_version |
/.well-known/ai-aup.json |
| Clinical AI Disclosure HealthTech | HIPAA / FDA / SaMD posture · bias audits · EHR integration | clinical_ai_card_version |
/.well-known/clinical-ai/<id>.json |
| AI Incident Card cross-cutting · vendor-side | "CVE for AI agents" · references every other document | incident_card_version |
/.well-known/ai-incidents/<id>.json |
| AI Procurement Decision Card cross-cutting · buyer-side | Buyer's procurement review outcome · documents reviewed · conditions · rationale · v0.2 adds data_vault_targets[] (Skyyflow-shaped field-level vault contract) powering rag-sentinel, deal-desk-workspace, kg-skyyflow-klaviyo-bridge, and the bridge console · v0.3 adds retention_envelope[] — per-field TTL + redaction action + ed25519-signed deletion-proof endpoint |
decision_card_version |
/.well-known/decisions/<id>.json |
| AI Claims Decision Card InsurTech · insurer-side | Insurer/adjudicator record that an AI system decided an insurance claim · outcome · underwriting rules applied · content-hashed evidence bundle · human-in-loop · ed25519-signed, hash-chained | claims_card_version |
— (document-embedded) |
02b · Regulatory mapping
NIST AI RMF crosswalk
Federal and enterprise procurement teams operating under OMB Memorandum M-24-10 can use this crosswalk to map every Suite spec — and the open-source implementation stack — to specific NIST AI RMF subcategories. The AI Procurement Decision Card (spec #11) is the natural carrier for RMF-aligned procurement outcomes — its criteria.rubric field can record per-subcategory pass / partial / fail results for any vendor review.
- Crosswalk v0.2 (2026-05-15), Section 7 —
policy-as-code-engineconverts MANAGE 1.3 from policy text to runtime gate audit-stream-pycloses the GOVERN 1.5 record-keeping legaeo-validator-service+slo-budget-trackerclose MEASURE 3.1 continuous-monitoring