pki.sgit.ai / documents / the-enforcement-ladder

The Enforcement Ladder: Six Levels, A Measured Assurance, And A Catch Above The Hook Is An Incident

TypeStrategy brief — memo 13, recorded before the project lead had read the pack it describes Versionv0.33.85 Date3 September 2026 AuthorDinis Cruz (project lead) and collaborators LicenceCC BY 4.0 Sourceraw markdown · view on GitHub

Summary

One policy, the number and size of files committed, walked up every place it could be enforced: nothing; a line in a prompt; a skill or a system prompt; a git hook in the agent's own clone; a check at the destination; and out-of-band verification after the fact. The reading places the six levels on the corpus's three tiers and finds a fourth the tier test had not named: detection. The memo's sharpest claims: assurance per level is measured on ordinary usage rather than asserted; the first four levels are client side, limited and a great signal in the same breath, because a breach seen at the destination means something is seriously wrong, a different policy, a different buffer, and possibly the loss of the licence to operate. Then the practical half: start with a published skill, a script and examples; look for a standard; find a name; and tie it to the grant and the mandate with a default-deny list. Built the same day: a revised policy naming the levels, a level on every ledger event, a reconciliation job that replays git against the ledger, a destination check in report mode, and a room card.

Key concepts

Key ideas

On this site

Adds insurance doctrine 13 and, in packs/insurance-ecosystem: policy revision r2 with the levels and files_per_commit, a level on every event, tools/reconcile.py, a policy-report CI workflow in report mode, the room's sixth card, and amendments to documents 01 to 08 with IE-D17 onward.

Read the document

📄 Original document · v0.33.85 · 3 September 2026 · rendered from the raw markdown (the source of truth)