Skip to content

Waiver Record

waiver_record 记录显式覆盖。当策略权威接受有边界的风险时使用。

每个 waiver SHOULD 包含 waiver_iddecision_id、原始 result 和 reason codes、waived_by、justification、scope、constraints、expiry、review requirement、linked grant/approval/evidence/incident refs。

Waiver 不能擦除 denied decision,必须让 runtime、evidence、audit 与后续 review 看到原始阻断和覆盖理由。

Draft standard for portable agent policy decisions, approvals, permissions, risk, and audit traces.