| A01 | The ABP model (four objects, grammar, barrier, delta, graph rules) | https://abp.sgit.ai/model/abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | specification | CC BY 4.0 (page footer; data/index.json) | low | unresolved | Canonical source; supersedes repo copies. Repo licence of SGit-AI__Website__ABP not verified (GitHub not attached to session) |
| A02 | Published vocabulary pack abp/pack/v1 v0.12.1 | https://abp.sgit.ai/data/index.json (+ capabilities.json, barriers.json, undo-classes.json, evidence-tiers.json)abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | data/vocabulary | CC BY 4.0 (stated in pack) | none | unresolved | Core of an OWASP project. Pack says no score anywhere |
| A03 | Published profiles, mandates, stored deltas, graph, lexicon, bridges | https://abp.sgit.ai/data/{profiles,mandates,deltas,graph,lexicon,bridges,universes,gaps,facts}/abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | data | CC BY 4.0 | low | unresolved | Check bridges for third-party standard text (rule 7) |
| A04 | RiskMandate-contributed shapes (8 shapes, 42 rows) | https://abp.sgit.ai/data/contributed/riskmandate/manifest.jsonabp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | data | CC BY 4.0 | low | unresolved | Same material as repo vaults; contribute once, from one place |
| A05 | Foundation document: What is an Agent Behaviour Policy | https://abp.sgit.ai/what-is-an-abp/ ; https://abp.sgit.ai/docs/briefs/v0.33.70__foundation__...abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | documentation | CC BY 4.0 | low | unresolved | Natural OWASP project charter text |
| A06 | Docs pack (start here, what to build, conventions, model, first examples, hard rules, the prompt) | https://abp.sgit.ai/docs/pack/00__START-HERE ... 06__THE-PROMPTabp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | documentation | CC BY 4.0 | low | unresolved | Hard rules map to repo CLAUDE.md rules 1-8 |
| A08 | Worked examples: browser extension, ChatGPT web, Claude Code CLI on/off, GitHub Actions | https://abp.sgit.ai/examples/ (5 examples)abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | examples | CC BY 4.0 | low | unresolved | Vendor-named; facts and dates only |
| A09 | Guided flows: Gmail, cost policy, desktop | https://abp.sgit.ai/gmail/ ; /cost/ ; /desktop/abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | documentation | CC BY 4.0 | low | unresolved | Cost flow may lean on pricing language; review |
| A12 | Model release history | https://abp.sgit.ai/versions/ (23)abp.sgit.ai (repo SGit-AI/SGit-AI__Website__ABP) | changelog | CC BY 4.0 | none | unresolved | Keep as provenance of the vocabulary |
| V01 | Template ABP vault: browser-extension | site/vaults/browser-extension/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V02 | Template ABP vault: chatgpt-web | site/vaults/chatgpt-web/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V03 | Template ABP vault: claude-code-cli | site/vaults/claude-code-cli/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V04 | Template ABP vault: claude-code-cli-confirmations-off | site/vaults/claude-code-cli-confirmations-off/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V05 | Template ABP vault: claude-code-web | site/vaults/claude-code-web/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V06 | Template ABP vault: claude-desktop | site/vaults/claude-desktop/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V07 | Template ABP vault: claude-gmail-connector | site/vaults/claude-gmail-connector/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip; only vault with a licence block in vault.json (kind cc-by-4.0, points to store ledger) |
| V08 | Template ABP vault: claude-m365-connector | site/vaults/claude-m365-connector/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V09 | Template ABP vault: claude-web-connectors | site/vaults/claude-web-connectors/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V10 | Template ABP vault: dropbox-mcp | site/vaults/dropbox-mcp/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V11 | Template ABP vault: github-actions | site/vaults/github-actions/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V12 | Template ABP vault: gmail-readonly | site/vaults/gmail-readonly/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V13 | Template ABP vault: google-drive-readonly | site/vaults/google-drive-readonly/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V14 | Template ABP vault: google-workspace-mcp | site/vaults/google-workspace-mcp/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V15 | Template ABP vault: n8n-owner-api-key | site/vaults/n8n-owner-api-key/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip; measured on a sandbox by an early beta user's agent: confirm consent |
| V16 | Template ABP vault: scheduled-job | site/vaults/scheduled-job/Risk-Mandate/riskmandate.ai | template ABP (vault) | CC BY 4.0 (LICENCE.md, generated) | low | unresolved | status=template; vocabulary v0.3.0; as_at 2026-09-15/16. Contribute data/ (grant, mandate, delta, scenarios, consequences, assets, barrier-holders) + the .md documents; strip LICENCE.md commercial section, app.link.json/read key, dist zip |
| V17 | Vault template and MAP-A-GRANT prompt | site/vaults/_template/ (MAP-A-GRANT.md, AGENTS.md, SKILL.md, data/assets.json, consequences.json, barrier-holders.json, standards/)Risk-Mandate/riskmandate.ai | template/prompt | CC BY 4.0 | low | unresolved | LICENCE.template.md (commercial licence body) excluded; see R10 |
| D02 | direction__abp-as-a-graph-and-stakeholder-views | docs/briefs/direction__abp-as-a-graph-and-stakeholder-views.mdRisk-Mandate/riskmandate.ai | design brief | Apache-2.0 repo (docs not separately licensed) | low | unresolved | Behaviours as nodes, barrier per path, views per audience |
| D04 | direction__the-grant-has-storeys-and-the-vault-opens-on-the-audience | docs/briefs/direction__the-grant-has-storeys-and-the-vault-opens-on-the-audience.mdRisk-Mandate/riskmandate.ai | design brief | Apache-2.0 repo (docs not separately licensed) | low | unresolved | Grant storeys: credential/client/etc |
| D09 | review__first-measured-abp-n8n-owner-key | docs/briefs/review__first-measured-abp-n8n-owner-key.mdRisk-Mandate/riskmandate.ai | design brief | Apache-2.0 repo (docs not separately licensed) | low | unresolved | Evidence tiers worked through on a measured grant |
| D10 | research__connector-grants-open-questions | docs/briefs/research__connector-grants-open-questions.mdRisk-Mandate/riskmandate.ai | design brief | Apache-2.0 repo (docs not separately licensed) | low | unresolved | Research method: read, quote, date vendor pages; never test |
| O01 | OWASP, as a graph | site/owasp-graph.html ; site/business-case/owasp/graph.jsonRisk-Mandate/riskmandate.ai | data + web page | CC BY 4.0; 'Offered to OWASP: take it' | low | unresolved | Contribute nodes/edges; the bridge is RiskMandate's reading of the RiskGraph model: rewrite as an ABP-primitive mapping or drop. Items titles only (rule 7 ok) |