DGAF / OVERVIEW

Overview

ConnectingAwaiting first valid snapshot
GOVERNED MULTI-AGENT ORCHESTRATION & EVALUATION

Make the difference between can act and may act impossible to miss.

DGAF separates evidence, verification, authority, and permission so engineering capability cannot silently become authorization—or testing become proof.

CANONICAL HIGH-ASSURANCE BOUNDARY

Truth boundary

SSoT reconciled 2026-09-16
Program statePRE-FREEZE
Fail modeFAIL-CLOSED
AuthorizationNOT AUTHORIZED
Empirical N0
Canonical efficacyNOT ESTABLISHED

Substantial engineering and governance evidence exists. Epoch 002 dataset lock is established and bounded unblinding is authorized; neither establishes canonical DGAF efficacy, primary-analysis authorization, or downstream High-Assurance authority.

CONCEPTUAL MODEL

Four controls that never collapse into one another

01

Evidence

What was observed or produced, with exact scope and provenance.

02

Verification

What review predicate passed, and whether it was independent.

03

Authority

Which role or record can make a decision in the current state.

04

Permission

Whether the exact next action is actually allowed to occur.

RESEARCH STATE

Track A at a glance

Historical prospective collection

Track A · Epoch 001

Not established

The blinded prospective collection and dataset lock completed, but the protected mapping is cryptographically unrecoverable, so the primary analysis is unanalyzable and was not run.

  • 50 paired inferential seed units
  • 2,250 blinded raw observations retained
  • Dataset lock established
  • Protected mapping cryptographically unrecoverable
  • Primary analysis: UNANALYZABLE / NOT RUN
Successor prospective path

Track A · Epoch 002

Open

The authorized blinded collection is complete, dataset lock is established, bounded unblinding is authorized, and materialization tooling is accepted; real materialization and primary analysis remain unestablished/unauthorized.

  • Collection: COMPLETE · 50 paired seed units / 2,250 blinded observations
  • Custody: SAME_SYSTEM_NONINDEPENDENT
  • Dataset lock: ESTABLISHED
  • Bounded unblinding: AUTHORIZED
  • Materialization: NOT ESTABLISHED
  • Primary analysis: NOT AUTHORIZED / NOT RUN
NEXT ADMISSIBLE TRANSITION

Materialize the retained Epoch 002 input under operator control

Use the accepted Stage-1 materializer and Stage-2 bundle wrapper against the exact retained Epoch 002 evidence, keeping custody secrets outside GitHub and CI; then admit only the validated non-secret materialization evidence and establish a separate immutable materialization receipt.

materialized analysis input (operator-controlled, content-addressed)materialized-input SHA-256 sidecarnon-secret materialization manifestoperator execution receiptTRACK_A_EPOCH_002_MATERIALIZATION_EVIDENCE.jsonTRACK_A_EPOCH_002_MATERIALIZATION_RECEIPT.json (later separate repository event)

Materialization does not authorize primary analysis. Do not expose private keys, passphrases, protected mappings, or other recoverable secret material.