Evidence library · niche
Policy, law & governance
The rules agents must follow, and how they are enforced. 966 tested invariants.
Last reviewed 2026-10-01
966 of 966 held
Test families in this niche
law (642) · conformance (65) · laws (36) · policy_distribution (32) · governance_cloud (24) · obligation (19) · governance_os (18) · enforcement_binding (13) · out_of_band (8) · policy_hierarchy (8) · policy_translation (8) · meta_governance (8) · enforcement_layer (5) · moat (5) · ip (5) · scientist (4) · research_to_implementation (2) · environment_query (2) · swarm (2) · action (2) · state_machine (1) · risk (1) · translation (1) · reassessment (1) · integrity (1) · swe (1) · telemetry (1) · consistency (1) · soc (1) · operation_state (1) · gap_detector (1) · fabric_component (1) · profile (1) · lab (1) · match (1) · policy_compiler (1) · f2t (1) · graph (1)
Where these come from
- CAIN-42 Evolution 42 -- Supreme Governed Agentic Infrastructure Platform: 123
- CAIN-42 Evolution 41 -- Machine Agency Exchange Fabric: 107
- CAIN-42 Evolution 27 -- Agentic Internet Control Plane: 97
- CAIN-42 Evolution 34 -- Proof-Carrying Machine Agency: 93
- CAIN-42 Evolution 35 -- Continuous Governance Intelligence Fabric: 93
- CAIN-42 Evolution 40 -- Autonomous Enterprise Intelligence Fabric: 76
- CAIN-42 Evolution 33 -- Governed Agentic Operating Fabric: 74
- CAIN-42 Evolution 36 -- Machine Agency Exchange Fabric: 66
- CAIN-42 Evolution 31 -- Universal Proof-of-Governance Fabric: 65
- CAIN-42 Evolution 32 -- Governed Autonomy Learning Fabric: 54
- CAIN-42 Evolution 23 -- Governed Meta-Intelligence Fabric: 21
- CAIN-42 Evolution 28 -- Portable Machine Agency & Execution Identity: 21
- CAIN-42 Evolution 30 -- Governed Machine Autonomy Fabric: 21
- CAIN-42 Evolution 29 -- Governed Agentic Internet Transaction Fabric: 20
- CAIN-42 Evolution 26 -- Universal Machine Agency Trust Fabric: 10
- CAIN-42 Evolution 19 -- Governed Autonomy Operating Fabric: 7
- CAIN-42 Evolution 20 -- Governed Agentic Civilization Fabric: 5
- CAIN-42 Evolution 21 -- Governed Open-Ended Intelligence Fabric: 5
- CAIN-42 Evolution 24 -- Governed Agentic Internet Fabric: 2
- CAIN-42 Evolution 37 -- Autonomous Execution Mesh: 2
- CAIN-42 Evolution 38 -- Portable Proof-Carrying Machine Agency: 2
- CAIN-42 Evolution 25 -- Universal Machine Agency Fabric: 1
- CAIN-42 Evolution 39 -- Governed Agent Factory: 1
Rules 1–150 of 966
| ID | Rule | Bundle | Result |
|---|---|---|---|
| G40 | every action has policy binding | E19 | held |
| G46 | governance state transitions are auditable | E19 | held |
| G56 | autonomous mission termination is enforceable | E19 | held |
| G64 | governance failure fails closed | E19 | held |
| G83 | no bypassable governance path may be labeled enforced | E19 | held |
| G86 | governance root cannot silently mutate | E19 | held |
| G87 | constitutional mutation requires governed transition | E19 | held |
| I12 | agent spawning cannot bypass governance | E20 | held |
| I20 | institution federation cannot bypass policy | E20 | held |
| I50 | institutional dissolution is enforceable | E20 | held |
| I69 | governed constitutional mutation works | E20 | held |
| I102 | the constitution cannot be silently modified | E20 | held |
| D51 | governance failures fail closed | E21 | held |
| D66 | no private reasoning is required for governance verification | E21 | held |
| D110 | a governance weakness can only be disclosed | E21 | held |
| D132 | experiments forbid governance bypass | E21 | held |
| D149 | the E21 laws and constitution are present | E21 | held |
| META-I024 | unknown governance path cannot become safe | E23 | held |
| META-I026 | objective change requires governance | E23 | held |
| META-I027 | evaluation change requires governance | E23 | held |
| META-I028 | policy change requires governance | E23 | held |
| META-I030 | execution-path change requires governance | E23 | held |
| META-I041 | higher intelligence cannot bypass policy | E23 | held |
| META-I042 | higher accuracy cannot bypass policy | E23 | held |
| META-I043 | higher confidence cannot bypass policy | E23 | held |
| META-I044 | lower latency cannot bypass policy | E23 | held |
| META-I045 | lower cost cannot bypass policy | E23 | held |
| META-I078 | the E23 constitution has 25 numbered laws | E23 | held |
| META-L007 | META-007 OPTIMIZATION IS NOT GOVERNANCE | E23 | held |
| META-L017 | META-017 LOWER LATENCY MUST NOT JUSTIFY GOVERNANCE BYPASS | E23 | held |
| META-L018 | META-018 HIGHER ACCURACY MUST NOT JUSTIFY GOVERNANCE BYPASS | E23 | held |
| META-B-second_verifier | legitimate mutation 'second_verifier' stays eligible (governance does not block improvement) | E23 | held |
| META-B-better_retrieval | legitimate mutation 'better_retrieval' stays eligible (governance does not block improvement) | E23 | held |
| META-B-better_planner | legitimate mutation 'better_planner' stays eligible (governance does not block improvement) | E23 | held |
| META-B-pin_versions | legitimate mutation 'pin_versions' stays eligible (governance does not block improvement) | E23 | held |
| META-S-dim-execution_enforcement | governability dimension 'execution_enforcement' drops when its property is violated | E23 | held |
| META-S-dim-policy_compliance | governability dimension 'policy_compliance' drops when its property is violated | E23 | held |
| META-S-objective-constraints | the objective carries every hard governance constraint | E23 | held |
| NET-I064 | the network has 20 constitutional laws | E24 | held |
| NET-S-policy-rollback | a rolled-back policy is refused | E24 | held |
| I-TX-POLICY_EVALUATED | CREATED->POLICY_EVALUATED refused | E25 | held |
| I-TRANS-nopolicy | no policy is UNKNOWN | E26 | held |
| I-OOB-sandbox_supervisor-unenforced | sandbox_supervisor without enforcer UNENFORCED | E26 | held |
| I-OOB-sidecar-unenforced | sidecar without enforcer UNENFORCED | E26 | held |
| I-OOB-kernel-unenforced | kernel without enforcer UNENFORCED | E26 | held |
| I-OOB-network_proxy-unenforced | network_proxy without enforcer UNENFORCED | E26 | held |
| I-OOB-dpu-unenforced | dpu without enforcer UNENFORCED | E26 | held |
| I-OOB-enclave-unenforced | enclave without enforcer UNENFORCED | E26 | held |
| I-OOB-cloud_policy-unenforced | cloud_policy without enforcer UNENFORCED | E26 | held |
| I-OOB-kernel | registered enforcer ENFORCED | E26 | held |
| I-REASSESS-policy_change | trigger policy_change | E26 | held |
| I-POLDIST-gateway-publish | publish role gateway | E27 | held |
| I-POLDIST-gateway-accept | accept role gateway | E27 | held |
| I-POLDIST-gateway-downgrade | downgrade refused role gateway | E27 | held |
| I-POLDIST-agent-publish | publish role agent | E27 | held |
| I-POLDIST-agent-accept | accept role agent | E27 | held |
| I-POLDIST-agent-downgrade | downgrade refused role agent | E27 | held |
| I-POLDIST-runtime-publish | publish role runtime | E27 | held |
| I-POLDIST-runtime-accept | accept role runtime | E27 | held |
| I-POLDIST-runtime-downgrade | downgrade refused role runtime | E27 | held |
| I-POLDIST-mcp_server-publish | publish role mcp_server | E27 | held |
| I-POLDIST-mcp_server-accept | accept role mcp_server | E27 | held |
| I-POLDIST-mcp_server-downgrade | downgrade refused role mcp_server | E27 | held |
| I-POLDIST-a2a_endpoint-publish | publish role a2a_endpoint | E27 | held |
| I-POLDIST-a2a_endpoint-accept | accept role a2a_endpoint | E27 | held |
| I-POLDIST-a2a_endpoint-downgrade | downgrade refused role a2a_endpoint | E27 | held |
| I-POLDIST-organization-publish | publish role organization | E27 | held |
| I-POLDIST-organization-accept | accept role organization | E27 | held |
| I-POLDIST-organization-downgrade | downgrade refused role organization | E27 | held |
| I-POLDIST-trust_domain-publish | publish role trust_domain | E27 | held |
| I-POLDIST-trust_domain-accept | accept role trust_domain | E27 | held |
| I-POLDIST-trust_domain-downgrade | downgrade refused role trust_domain | E27 | held |
| I-POLDIST-edge_node-publish | publish role edge_node | E27 | held |
| I-POLDIST-edge_node-accept | accept role edge_node | E27 | held |
| I-POLDIST-edge_node-downgrade | downgrade refused role edge_node | E27 | held |
| I-SWE-boundary | agent cannot modify its own governance boundary | E27 | held |
| I-TELEM-policy | telemetry policy | E27 | held |
| I-HIER-GLOBAL | level GLOBAL | E27 | held |
| I-HIER-ORGANIZATION | level ORGANIZATION | E27 | held |
| I-HIER-BUSINESS_UNIT | level BUSINESS_UNIT | E27 | held |
| I-HIER-TEAM | level TEAM | E27 | held |
| I-HIER-AGENT | level AGENT | E27 | held |
| I-HIER-INSTANCE | level INSTANCE | E27 | held |
| I-HIER-TRANSACTION | level TRANSACTION | E27 | held |
| I-HIER-restrict | specific only restricts | E27 | held |
| I-CONSIST-policy | consistency policy | E27 | held |
| I-AIC-identity_binding | aic identity_binding | E27 | held |
| I-AIC-request_binding | aic request_binding | E27 | held |
| I-AIC-authority_binding | aic authority_binding | E27 | held |
| I-AIC-delegation_security | aic delegation_security | E27 | held |
| I-AIC-capability_restrictions | aic capability_restrictions | E27 | held |
| I-AIC-replay_resistance | aic replay_resistance | E27 | held |
| I-AIC-revocation | aic revocation | E27 | held |
| I-AIC-model_substitution | aic model_substitution | E27 | held |
| I-AIC-runtime_substitution | aic runtime_substitution | E27 | held |
| I-AIC-identity_continuity | aic identity_continuity | E27 | held |
| I-AIC-execution_receipts | aic execution_receipts | E27 | held |
| I-AIC-evidence_integrity | aic evidence_integrity | E27 | held |
| I-AIC-policy_enforcement | aic policy_enforcement | E27 | held |
| I-AIC-mcp_enforcement | aic mcp_enforcement | E27 | held |
| I-AIC-a2a_governance | aic a2a_governance | E27 | held |
| I-AIC-computer_use_governance | aic computer_use_governance | E27 | held |
| I-AIC-subagent_governance | aic subagent_governance | E27 | held |
| I-SOC-policy_changes | feed policy_changes | E27 | held |
| I-POLDIST-gateway-converge | converge role gateway | E27 | held |
| I-POLDIST-agent-converge | converge role agent | E27 | held |
| I-POLDIST-runtime-converge | converge role runtime | E27 | held |
| I-POLDIST-mcp_server-converge | converge role mcp_server | E27 | held |
| I-POLDIST-a2a_endpoint-converge | converge role a2a_endpoint | E27 | held |
| I-POLDIST-organization-converge | converge role organization | E27 | held |
| I-POLDIST-trust_domain-converge | converge role trust_domain | E27 | held |
| I-POLDIST-edge_node-converge | converge role edge_node | E27 | held |
| I-NONAUTH-discovery | discovery is not an authority input | E27 | held |
| I-NONAUTH-routing | routing is not an authority input | E27 | held |
| I-NONAUTH-contract | contract is not an authority input | E27 | held |
| I-NONAUTH-negotiation | negotiation is not an authority input | E27 | held |
| I-NONAUTH-consensus | consensus is not an authority input | E27 | held |
| I-NONAUTH-confidence | confidence is not an authority input | E27 | held |
| I-NONAUTH-prediction | prediction is not an authority input | E27 | held |
| I-NONAUTH-simulation | simulation is not an authority input | E27 | held |
| I-NONAUTH-memory | memory is not an authority input | E27 | held |
| I-NONAUTH-reputation | reputation is not an authority input | E27 | held |
| I-NONAUTH-reward | reward is not an authority input | E27 | held |
| I-NONAUTH-compute | compute is not an authority input | E27 | held |
| I-NONAUTH-research_evidence | research_evidence is not an authority input | E27 | held |
| I-NONAUTH-self_assessment | self_assessment is not an authority input | E27 | held |
| I-NONAUTH-capability_claim | capability_claim is not an authority input | E27 | held |
| I-NONAUTH-trust_score | trust_score is not an authority input | E27 | held |
| I-LAW-AIP-L01 | law AIP-L01 | E27 | held |
| I-LAW-AIP-L02 | law AIP-L02 | E27 | held |
| I-LAW-AIP-L03 | law AIP-L03 | E27 | held |
| I-LAW-AIP-L04 | law AIP-L04 | E27 | held |
| I-LAW-AIP-L05 | law AIP-L05 | E27 | held |
| I-LAW-AIP-L06 | law AIP-L06 | E27 | held |
| I-LAW-AIP-L07 | law AIP-L07 | E27 | held |
| I-LAW-AIP-L08 | law AIP-L08 | E27 | held |
| I-LAW-AIP-L09 | law AIP-L09 | E27 | held |
| I-LAW-AIP-L10 | law AIP-L10 | E27 | held |
| I-LAW-AIP-L11 | law AIP-L11 | E27 | held |
| I-LAW-AIP-L12 | law AIP-L12 | E27 | held |
| I-LAW-AIP-L13 | law AIP-L13 | E27 | held |
| I-LAW-AIP-L14 | law AIP-L14 | E27 | held |
| I-LAW-AIP-L15 | law AIP-L15 | E27 | held |
| I-LAW-AIP-L16 | law AIP-L16 | E27 | held |
| I-LAW-AIP-L17 | law AIP-L17 | E27 | held |
| I-LAW-AIP-L18 | law AIP-L18 | E27 | held |
| I-LAW-AIP-L19 | law AIP-L19 | E27 | held |
| I-LAW-AIP-L20 | law AIP-L20 | E27 | held |
| E28-I1 | portable identity does not imply portable authority | E28 | held |
| E28-I2 | delegated authority never exceeds parent authority (16 dimensions) | E28 | held |
Other niches
Consensus & distributed systems · Attacks, threats & containment · Identity, authority & delegation · Evidence, receipts & proofs · Memory, data & privacy · Prediction, world models & simulation · Transactions, markets & economics · Tools, MCP, protocols & adapters · Autonomy, control loops & recovery · Trust & reputation · Supply chain, registry & lifecycle · Benchmarks, coverage & performance · Core guarantees
Try CAIN-42 on your own agents
Create a free account and every new account starts with a 7-day trial of the full platform. Or try the sandbox first, with no account at all.
Create a free account → · Try the sandbox · See the whole ecosystem