Identity and accountability
Record the AI Worker, business purpose, outcome, accountable owner, sponsor, reviewers, risk tier, and lifecycle state.
Passport Studio
Passport Studio helps customer teams define who owns an AI Worker, why it exists, what it may access or do, which risks and reviews apply, what evidence is required, and when its authority must pause, change, or end.
One Governed Record
A Passport brings the operating questions into one governed record instead of scattering them across intake forms, tool configurations, approval notes, and dashboards.
Record the AI Worker, business purpose, outcome, accountable owner, sponsor, reviewers, risk tier, and lifecycle state.
Define allowed and prohibited actions, data classes, models, tools, APIs, connectors, destinations, autonomy, escalation, and pause conditions.
Show required Human Review, Toll Gate posture, evidence gaps, monitoring needs, renewal conditions, and the next accountable decision.
Passport To Action
Passport Studio prepares the governed identity and boundary that later controls evaluate. A Passport does not grant credentials, execute tools, or authorize every future action.
Create the Passport identity, purpose, owner, risk tier, lifecycle, permissions, prohibitions, and evidence requirements.
Route missing evidence, higher-risk boundaries, exceptions, and consequential use through Toll Gates and accountable Human Review.
At action time, evaluate current Passport scope, policy, tool authorization, evidence, destination, approval, and revocation state.
When eligible in an implemented customer environment, issue a short-lived Runtime Permit and mediate the exact action through the Action Broker.
Write decisions, receipts, exceptions, outcomes, and lifecycle changes to the evidence trail for accountable review.
Passport Studio supports governance compilation and review preparation. It does not issue credentials, approve production use, operate live connectors, provide legal conclusions, provide compliance conclusions, validate security posture, or replace accountable customer review.
Worked Example
A Procurement Intake AI Worker has an owner and an approved supplier-update purpose, but a requested external destination falls outside its Passport boundary.
The record keeps the owner, purpose, approved scope, prohibited external-send action, missing destination evidence, and Human Review route together.
This is a static public example, not a customer record or proof of live enforcement.
Protected Workspace
Passport records may contain operational context, reviewer notes, system boundaries, evidence references, tool posture, and lifecycle signals. The public page explains the product; it does not expose the workspace.
The licensed control-plane package, Passport record model, review workflows, lifecycle controls, evidence structure, and customer-managed deployment path.
Identity, access, infrastructure, data, connected systems, policies, reviewers, evidence, deployment, and formal legal, security, privacy, compliance, audit, and production decisions.
Only the published product narrative and static example behavior—not customer configuration, workspace access, live connector execution, or customer-specific control effectiveness.