{"packId":"atlas-compliance-pack/v1","exportedAt":"2026-07-29T10:45:33.207Z","label":"Governance-as-a-Service Compliance Pack","portalId":"corporate","masterGovernance":{"id":"governance-master","version":"1.0.0-2026.06.28","label":"ATLAS Master Governance & Security Policy","dataSovereignty":"Tenant data is strictly isolated by portal. Your operational data never trains shared models or bleeds across military and corporate tenants.","dataIsolation":"Engine is shared; knowledge and entity graph partitions are siloed per portal. Corporate supply-chain data does not train military incident models, and vice versa.","aiLiabilityModel":"AI is an advisor only. Human-in-the-loop review is required before any critical insight becomes an authorized decision. Operator retains liability for all actions taken.","hitlLabel":"AI-Generated Insight: Human Review Required","portability":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","auditCompliance":"All AI suggestions and human approvals are recorded in the HITL audit log at /api/governance/hitl-audit. Reasoning traces must cite source references before executive action.","pricingModel":"Per-portal / per-workbench licensing — predictable TCO. No per-token or per-query surprise billing for standard operator seats.","dayOneValue":"Pre-built industry blueprints (e.g. logistics) activate in under 24 hours via configuration, not multi-year customization.","connectorFramework":"Enterprise data ingress via documented API gateway and connector catalog — SAP, Oracle, Salesforce adapters are integration targets with staged/live posture labels.","exportFormats":["json","yaml"],"exportApi":"/api/governance/export-manifest","auditLogApi":"/api/governance/hitl-audit","systemOfRecordApi":"/api/governance/system-of-record","redTeamReadinessApi":"/api/governance/red-team-readiness","systemOfRecordNote":"Demo dual-writes HITL to in-memory mirror + Postgres governance_hitl_audit. Production auditors treat Postgres as authoritative.","connectorsApi":"/api/governance/connectors","blueprintsApi":"/api/governance/blueprints","requiredPortalFields":["governance"]},"portalGovernance":{"id":"governance-master","version":"1.0.0-2026.06.28","label":"ATLAS Master Governance & Security Policy","dataSovereignty":"Corporate tenant data never trains military models or shared fine-tuning datasets.","dataIsolation":"Engine is shared; knowledge and entity graph partitions are siloed per portal. Corporate supply-chain data does not train military incident models, and vice versa.","aiLiabilityModel":"AI-generated risk insights require executive human approval before operational action.","hitlLabel":"AI-Generated Insight: Human Review Required","portability":"Export full corporate house — graph, dialect, manifest — as JSON/YAML from /api/governance/export-manifest.","auditCompliance":"All AI suggestions and human approvals are recorded in the HITL audit log at /api/governance/hitl-audit. Reasoning traces must cite source references before executive action.","pricingModel":"Per-portal / per-workbench licensing — predictable TCO. No per-token or per-query surprise billing for standard operator seats.","dayOneValue":"Pre-built industry blueprints (e.g. logistics) activate in under 24 hours via configuration, not multi-year customization.","connectorFramework":"Enterprise data ingress via documented API gateway and connector catalog — SAP, Oracle, Salesforce adapters are integration targets with staged/live posture labels.","exportFormats":["json","yaml"],"exportApi":"/api/governance/export-manifest","auditLogApi":"/api/governance/hitl-audit","systemOfRecordApi":"/api/governance/system-of-record","redTeamReadinessApi":"/api/governance/red-team-readiness","systemOfRecordNote":"Demo dual-writes HITL to in-memory mirror + Postgres governance_hitl_audit. Production auditors treat Postgres as authoritative.","connectorsApi":"/api/governance/connectors","blueprintsApi":"/api/governance/blueprints","requiredPortalFields":["governance"]},"workbenches":[{"id":"efficiency","label":"Efficiency / Growth","tagline":"Bottlenecks, resource allocation, and KPI trajectory.","best_for":["Retail","Supply Chain","Manufacturing"],"tools":[{"id":"bottleneck-simulation","label":"Bottleneck Simulation","route":"/executive#risks","description":"Simulate supply-chain bottlenecks and bottom-line impact.","workbenchId":"efficiency"},{"id":"resource-allocation","label":"Resource Allocation","route":"/workspace","description":"Allocate resources across operational lanes.","workbenchId":"efficiency"},{"id":"kpi-trajectory","label":"KPI Trajectory","route":"/executive#kpis","description":"Executive KPI trend and trajectory window.","workbenchId":"efficiency"}],"enabled":true},{"id":"risk","label":"Risk / Compliance","tagline":"What-if scenarios, constraint checks, and regulatory cross-walk.","best_for":["Corporate","Legal","Finance"],"tools":[{"id":"scenario-modeling","label":"Scenario Modeling","route":"/evaluate","description":"What-if evaluation and executive scenario lanes.","workbenchId":"risk"},{"id":"constraint-sweeps","label":"Constraint Sweeps","route":"/evaluate/surface-scan","description":"Surface integrity and constraint audit for demo paths.","workbenchId":"risk"},{"id":"regulatory-crosswalk","label":"Regulatory Cross-Walk","route":"/capabilities","description":"Capability and compliance posture cross-reference.","workbenchId":"risk"}],"enabled":true},{"id":"integrity","label":"Integrity / Audit","tagline":"Human-in-the-loop log, reasoning trace, and portable house export.","best_for":["Compliance","Procurement","C-Suite"],"tools":[{"id":"hitl-log","label":"HITL Log Access","route":"/executive#audit","description":"Human review queue and decision audit trail.","workbenchId":"integrity"},{"id":"reasoning-trace","label":"Reasoning Trace","route":"/evaluate/reviewer","description":"Evaluator prove chain and AI reasoning trace.","workbenchId":"integrity"},{"id":"manifest-export","label":"Manifest Export","route":"/api/governance/export-manifest?portal=corporate&format=json","description":"Export portal house as JSON or YAML.","workbenchId":"integrity"}],"enabled":true}],"hitlAuditSample":[{"id":"hitl-1784137769362-1n8xhy","at":"2026-07-15T17:49:29.362Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1784137723361-2ms2m3","at":"2026-07-15T17:48:43.361Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783957025432-xj78bx","at":"2026-07-13T15:37:05.432Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783956993018-14ntw5","at":"2026-07-13T15:36:33.018Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783956815107-wesz5u","at":"2026-07-13T15:33:35.107Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783956800528-8gv4sn","at":"2026-07-13T15:33:20.528Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783956744281-msqjnq","at":"2026-07-13T15:32:24.281Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"},{"id":"hitl-1783956734718-ks5zcc","at":"2026-07-13T15:32:14.718Z","portalId":"corporate","contextType":"corporate","insightType":"export","label":"House export (json)","hitlStatus":"approved","references":["export-manifest"],"reasoningTrace":"Full house export available at any time — portal manifest, governance policy, dialect map, and tenant-scoped graph export as JSON or YAML. You own the data; ATLAS owns the engine runtime.","actor":"operator","modulePath":"/executive"}],"apis":{"hitlAudit":"/api/governance/hitl-audit","systemOfRecord":"/api/governance/system-of-record","exportManifest":"/api/governance/export-manifest?portal=corporate&format=json","pqcBridge":"/api/security/pqc/v1","compliancePack":"/api/security/compliance-pack/v1?portal=corporate"},"cisoChecklist":["Data sovereignty and tenant isolation policy attached","HITL audit trail with Postgres system of record","NIST FIPS 203/204 PQC transparency log","Portable house export (JSON/YAML)"]}