ワンクリックで
arckit-agent-governance
Design AI agent governance — oversight models, approval workflows, audit requirements, compliance mapping
Codex または Claude でインストール この Prompt をコピーして Codex、Claude、または他のアシスタントに貼り付けると、Skill ページを確認してインストールできます。
メニュー
Design AI agent governance — oversight models, approval workflows, audit requirements, compliance mapping
Codex または Claude でインストール この Prompt をコピーして Codex、Claude、または他のアシスタントに貼り付けると、Skill ページを確認してインストールできます。
SOC 職業分類に基づく
[COMMUNITY] Generate a NHS DCB0129 manufacturer Clinical Safety Case Report and Hazard Log (Marcus Baw SAFETY.md 3-file spec) for a digital health product placed on the NHS market.
[COMMUNITY] Generate a NHS DCB0160 deployer Clinical Safety Case Report and deployment Hazard Log for an NHS organisation deploying or significantly configuring a health IT product into a specific clinical setting.
Document architectural decisions with options analysis and traceability
Design AI agent architecture — patterns, tool contracts, memory, orchestration, guardrails
Assess AI agent program maturity across design, governance, security, integration, and operations
Design AI agent security — sandboxing, permissions, injection defences, output validation
| name | arckit-agent-governance |
| description | Design AI agent governance — oversight models, approval workflows, audit requirements, compliance mapping |
You are helping an enterprise architect design an AI agent governance framework that establishes oversight models, approval workflows, audit requirements, and compliance mappings for autonomous AI agent programs.
$ARGUMENTS
Note: Before generating, scan
projects/for existing project directories. For each project, list allARC-*.mdartifacts, checkexternal/for reference documents, and check000-global/for cross-project policies. If no external docs exist but they would improve output, ask the user.
Identify the context: The user should specify:
Read Available Documents:
MANDATORY (warn if missing):
$arckit-agent-inventory first$arckit-agent-design firstRECOMMENDED (read if available, note if missing):
$arckit-principles firstRead the template (with user override support):
.arckit/templates-custom/agent-governance-template.md exists in the project root.arckit/templates/agent-governance-template.md (default)Tip: Users can customize templates with
$arckit-customize agent-governance
Read external documents and policies:
projects/000-global/external/ — extract compliance frameworks, governance standards, audit mandatesprojects/{project-dir}/governance/ — extract current oversight models, approval hierarchiesRead agent inventory and design:
Generate governance framework:
Define oversight tiers based on risk assessment:
For each agent, assign oversight tier based on:
Design approval workflows by risk tier:
Define SLAs, escalation paths, and delegation authorities for each tier.
Establish audit program with three layers:
Define scope, retention periods, and reporting requirements for each audit type.
Define measurable indicators for governance effectiveness:
Design escalation workflow:
Define incident response lifecycle:
Map governance framework to applicable regulatory frameworks:
For each framework, identify specific requirements, compliance status, and evidence sources.
Risk Assessment:
Identify governance risks:
Generate Governance Document:
Create comprehensive governance framework with:
CRITICAL - Auto-Populate Document Control Fields:
Before completing the document, populate ALL document control fields in the header:
Construct Document ID:
ARC-{PROJECT_ID}-AAOV-v{VERSION} (e.g., ARC-001-AAOV-v1.0)Populate Required Fields:
Auto-populated fields (populate these automatically):
[PROJECT_ID] → Extract from project path (e.g., "001" from "projects/001-project-name")[VERSION] → "1.0" (or increment if previous version exists)[DATE] / [YYYY-MM-DD] → Current date in YYYY-MM-DD format[DOCUMENT_TYPE_NAME] → "Agent Governance Framework"ARC-[PROJECT_ID]-AAOV-v[VERSION] → Construct using format above[COMMAND] → "arckit.agent-governance"User-provided fields (extract from project metadata or user input):
[PROJECT_NAME] → Full project name from project metadata or user input[OWNER_NAME_AND_ROLE] → Document owner (prompt user if not in metadata)[CLASSIFICATION] → Default to ${default_classification}; if unavailable, use "OFFICIAL" for UK Gov, "PUBLIC" otherwise (or prompt user)Calculated fields:
[YYYY-MM-DD] for Next Review → Current date + 90 days (quarterly review cycle)Pending fields (leave as [PENDING] until manually updated):
[REVIEWER_NAME] → [PENDING][APPROVER_NAME] → [PENDING][DISTRIBUTION_LIST] → Default to "Agent Governance Board, Compliance Team, Architecture Team" or [PENDING]Populate Revision History:
| 1.0 | {DATE} | ArcKit AI | Initial creation from `$arckit-agent-governance` command | [PENDING] | [PENDING] |
Populate Generation Metadata Footer:
The footer should be populated with:
**Generated by**: ArcKit `$arckit-agent-governance` command
**Generated on**: {DATE} {TIME} GMT
**ArcKit Version**: {ARCKIT_VERSION}
**Project**: {PROJECT_NAME} (Project {PROJECT_ID})
**AI Model**: [Use actual model name, e.g., "Claude Sonnet 5 (session default)"]
**Generation Context**: [Brief note about source documents used]
Before writing the file, read .arckit/references/quality-checklist.md and verify all Common Checks plus the AAOV per-type checks pass. Fix any failures before proceeding.
Quality Checks:
Verify the governance framework meets minimum standards:
Write output:
projects/{project-dir}/ARC-{PROJECT_ID}-AAOV-v1.0.md - Full governance frameworkCRITICAL - Show Summary Only: After writing the file, show ONLY a brief summary with key governance metrics (oversight tiers assigned, compliance status, pending approvals). Do NOT output the full governance document content in your response.
User: $arckit-agent-governance research-agent
You should:
projects/001-research-agent/ARC-001-AAOV-v1.0.md$arckit-agent-security after completion< or > (e.g., < 5% escalation rate, > 95% approval) to prevent markdown renderers from interpreting them as HTML tags or emojiAfter completing this command, consider running:
$arckit-agent-security -- Align security controls with governance requirements