The business case · Policy engine
Cedar, by the risk it changes
A policy language and engine whose decisions default to deny: if no policy permits a request, the answer is no. Written as an answer, that is read-only access where only reading is permitted and the application holding the data enforces the decision.
Open source: Apache-2.0 · CNCF (sandbox) · get involved
The deployment: The model's typical deployment, with the answers this project addresses stated as they are without it: can read and change the data in its reach.
The model: the RiskGraph Explorer's 49 facts, 49 risks and 10 roles, copied into this site with its provenance; the register below is computed, not written. How.