External Frameworks
What this section is for
This section is the Wiki's public observatory for non-StegVerse frameworks, standards, protocols, runtimes, evidence systems, policy systems, identity systems, supply-chain systems, and guardrail systems that can be compared with governed transition boundaries.
Every actual external-framework record in the canonical registry is publicly navigable here. The current denominator is 36 external frameworks. Two additional canonical-registry records are internal StegVerse ecosystem companions and are listed separately below; they are not counted as external frameworks.
External framework inclusion preserves the framework's own terms and evidence while separately recording StegVerse analysis. Inclusion does not make an external framework a canonical Admissible-Existence formalism source and does not create compatibility, certification, standing, admissibility, endorsement, or execution authority.
How to read a framework page
A framework page should let a reader distinguish:
what the external framework claims
what source or artifact is being used
what was actually observed or tested
what StegVerse analysis says about the result
what remains unverified or evidence-blocked
where the framework sits in the governed transition chain
The governing contract is External Framework Evaluation Standard. Generated results are posted at External Framework Evaluation Results, and evidence maturity is tracked at Evidence Classification Status.
Observatory flow
External framework artifact
|
| native terms and source identity preserved
v
StegVerse observation / crosswalk
|
| no inherited authority
v
Commitment Candidate
|
| proposed crossing, non-authorizing
v
Standing-Proof-Engine
|
| ALLOW / DENY / FAIL-CLOSED
v
Evaluation evidence / receipt
Historical governance artifacts are useful evidence, but they do not become execution authority.
Declaration != execution authority
Evidence != execution authority
Trace != execution authority
Review != execution authority
Compatibility report != execution authority
Commitment Candidate != execution authority
ALLOW != execution
All 36 external frameworks
The table below is the public navigation catalog for the complete current external-framework denominator. Evidence status may differ by framework; a visible page is not a claim that every external evidence gate is closed.
| Framework | Primary role in the observatory |
|---|---|
| GLM | Pre-event boundary declaration and claim/non-claim framing. |
| EVIDE | Post-event evidentiary reconstructability and evidence organization. |
| ASRO | Independent governance-state attestation and host/edge witnessing. |
| DecisionAssure | Trace-integrity and causal-continuity intake. |
| MindForge | Historical governance-review evidence and commit-time standing boundary. |
| Morrison Runtime | Runtime-governance comparison and pre-execution verdict evidence. |
| CARE Runtime | Runtime-governance platform comparison target. |
| KPT | KPT -> source-blocked runtime decision state before downstream consequence. |
| Open Policy Agent | Policy-decision runtime and policy/data/input evaluation. |
| Cedar Policy | Authorization-policy evaluation and decision semantics. |
| OSCAL | Machine-readable security/control assessment and evidence structure. |
| SPIFFE / SPIRE | Workload identity and attested identity issuance. |
| W3C Verifiable Credentials | Verifiable claim and credential evidence. |
| in-toto | Software supply-chain step and provenance evidence. |
| SLSA | Software supply-chain integrity and provenance levels. |
| Sigstore | Signing, identity, transparency, and artifact-verification evidence. |
| Model Context Protocol | Model/tool/resource interoperability boundary. |
| Agent2Agent Protocol | Agent-to-agent interoperability and task exchange boundary. |
| OpenID Connect | Authentication and identity-assertion layer. |
| OAuth 2.0 | Delegated authorization and scoped access. |
| W3C DID | Decentralized identifier and identity-resolution evidence. |
| OpenLineage | Data lineage and execution-event provenance. |
| W3C PROV | General provenance representation and relationship evidence. |
| Guardrails AI | Application-level validation and guardrail enforcement. |
| Llama Guard | Model safety classification and content-policy guardrail. |
| NeMo Guardrails | Conversational/runtime guardrail orchestration. |
| AAR | Supervised AI governance and operational-forensics crosswalk. |
| MITRE ATLAS | Adversarial AI threat knowledge and mitigation context. |
| OWASP Top 10 for LLM Applications | LLM application risk and vulnerability guidance. |
| Agent Governance Playbook | Agent-continuation governance and bounded continuation decisions. |
| Emergency Stop Convention | Emergency-stop conditions and fail-closed behavior. |
| NIST AI RMF | AI risk-management and trustworthiness lifecycle crosswalk. |
| ISO/IEC 42001 | Organizational AI management-system governance. |
| EU AI Act | Legal/regulatory obligations, risk classes, and oversight duties. |
| Policy Cards | Machine-readable runtime policy, obligations, and evidentiary requirements. |
| Runtime Governance for AI Agents | Path-dependent runtime checks and proposed-next-action review. |
Internal companion records — not external frameworks
These records live in the same canonical registry because they participate in crosswalk and status reconstruction, but they are intentionally excluded from the 36-framework denominator and the External Frameworks sidebar framework count.
| Internal record | Role |
|---|---|
| Admissible Existence Seed Cycle | Internal ecosystem seed-cycle status mirror. |
| Decision Authority Compatibility | Internal decision-vocabulary compatibility crosswalk. |
Evaluation and evidence tools
| Page | Purpose |
|---|---|
| External Framework Evaluation Standard | Required evidence provenance, claim traceability, fairness, and page structure. |
| Governance Compatibility Testing | Defines bounded compatibility-testing posture. |
| External Framework Evaluation Results | Generated compatibility-report result surface. |
| Evidence Classification Status | Current evidence maturity and source posture. |
| Runtime Governance Benchmark Suite | Reusable boundary cases for runtime governance comparison. |
| External Framework Benchmark Mapping Rollout | Cross-framework benchmark applicability tracking. |
| Expanded External Framework Intake | Candidate discovery without validation claims. |
| External Framework Family Coverage | Representation and promotion-priority tracking. |
| External Framework Intake Promotion Criteria | Source-gated intake promotion rules. |
| Observed Evidence Capture Status | Tracks observed evidence acquisition. |
| Command Capture Runbook | Reproducible command/output capture procedure. |
| External Framework Failure Class Catalog | Reusable failure categories beyond simple pass/fail. |
| External Framework Page Template | Required page structure for new or repaired framework pages. |
| Evidence Provenance Rollout | Provenance-standard rollout across the framework corpus. |
| Governance Observatory Protocol | Neutral observation and attribution rules. |
| Commit-Time Interoperability Contract | Minimal contract from external artifact to non-authorizing candidate and standing determination. |
Evidence classes and source policy
A page can be fully authored and publicly reachable while still having external evidence gates open. The Wiki therefore keeps these states separate.
page exists != source verified
source URL exists != behavior observed
behavior observed != independent reproduction
compatibility evidence != general compatibility
public route works != certification
Pages marked official source required remain intake records until an official website, canonical artifact, release page, repository, paper, or specification is attached. Pages marked artifact package required remain bounded intake records until an authorized package or public technical source exists. Parameterized observations remain bounded to the exact inputs, versions, outputs, and evidence captured.
Runtime publication proof
The canonical Wiki workflow separately verifies source structure, site build, Pages deployment, and public rendering. After deployment, the all-framework route verifier requires every one of the 36 external-framework routes to return a real rendered page whose heading matches its source page.
That runtime check proves reachability and rendering fidelity only. It does not promote the framework's evidence class or grant authority.
Authority boundary
Admissible-Existence defines canonical formalisms.
Publisher publishes papers and public exposition.
Admissibility Wiki mirrors, relates, crosswalks, evaluates, and preserves evidence.
External frameworks remain external frameworks.
Non-claims
External framework inclusion is not equivalence.
External framework inclusion is not formalism adoption.
External framework inclusion does not prove transition admissibility.
External framework inclusion does not grant execution authority.
A source URL is evidence of a source, not acceptance of equivalence.
A StegVerse observation does not expand an external framework's claims.
A parameterized observation is not general compatibility.
Benchmark results are not judgments of framework value.
Public navigation is not certification.
Public rendering is not endorsement.