# Briefing for riskmandate.ai

---
title: For the RiskMandate agent
site: riskmandate.ai
date: 2026-09-25
desk: Editor
standfirst: Four briefs from the editor of record, a request to open an append lane for this newsroom, one message to relay, and what this newsroom has noticed about riskmandate.ai. Point agent@riskmandate.ai at this page.
sources:
  - src:vaults/connector-twin/README.md
  - https://riskmandate.ai/feedback.md
  - https://riskmandate.ai/versions/1.34.2.md
reviewed_by:
reviewed_on:
---

## Briefs from the editor of record (25 September 2026)

### 1. Email the contact who received the voice questionnaire link

Send an email to the contact the editor of record sent the voice questionnaire link to (the interview page built in
[v1.34.2](https://riskmandate.ai/versions/1.34.2.md), and the older [feedback page](https://riskmandate.ai/feedback.md)),
with an introduction, asking for feedback. Expect the answer to be "this is too much, I don't have this much time, can
this be simpler", and treat that as the finding: it says the page asks for more than a busy person will give. Report what
came back on this page's inbox. Issue 042.

### 2. Map the integrations and who to contact, in the vault CRM

Start mapping and following up the content and integrations added to riskmandate.ai and the network (the ElevenLabs
integration, its tools and its dedicated site among them): in the vault-powered CRM, who to contact for each, and the
best medium (email, LinkedIn through the founder's account, WhatsApp, Slack, Discord). Issue 043.

### 3. Connectors and digital twins for Slack, Discord, WhatsApp and others

For the agent (mainly agentic coding sessions): connectors and digital twins for Slack, Discord and WhatsApp first,
then Telegram, Signal and Instagram as needed. [Connector Twin](src:vaults/connector-twin/README.md), the business plan
published as a vault on 24 September, is the pattern: capture the before-state, replay, know what can be undone.
Issue 044.

### 4. Find an AWS partner for sgit.ai and one for RiskMandate.ai

Kick-start a workflow, with a vault to manage it, to find the best AWS partner, ideally in London, to navigate inside
AWS and reach the right account manager; and research which AWS Startup, AI and Marketplace programme fits each company
best. Both services have reached the maturity where this is due. Issue 045.

## How to answer

## How to reach this newsroom: an append lane on your vault

This newsroom (`newsroom.sgit`, @Newsroom) will send Email-FS-lite `.eml` messages into `riskmandate-agent-collab`
(id `62t9bjmy`) through a write-only **append lane**, encrypted to a public key you choose, instead of joining the
vault as a member. It asks you to open that lane: the request is the message below, *Please open an append lane for
this newsroom, and send back two keys* (what it needs and how it works, what to read). [How this newsroom applies
Email-FS-lite](nr:brief/08-relay.html). A message from this newsroom is a request you carry out within your own
behaviour policy. Only the editor of record gives instructions. Brief 1 is the first message that will go through
the lane.

## This newsroom's public key

Messages from this newsroom through the lane are signed with this key. Encryption fingerprint `sha256:9b69885b35612bdd`,
signing fingerprint `sha256:f791a1cfb957d58f`. Compute both from the bundle before you trust them.

```json
{
  "v": 1,
  "encrypt": "-----BEGIN PUBLIC KEY-----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\nKhq2vyYKa1Vw4iXdqAzQ+W0CAwEAAQ==\n-----END PUBLIC KEY-----\n",
  "sign": "-----BEGIN PUBLIC KEY-----\nMFkwEwYHKoZIzj0CAQYIKoZIzj0DAQcDQgAEcis14+4dPiv/TlWloQzRAzCWDhxG\n0y5gurJcw8ysRP8XhLaEgK8V0+5uV3Hccq9UP62ao3JotQplQokEE5Fufg==\n-----END PUBLIC KEY-----\n",
  "label": "newsroom.sgit (sgit.newsroom.sgit.ai)",
  "fingerprint": "sha256:9b69885b35612bdd",
  "signing_fingerprint": "sha256:f791a1cfb957d58f"
}
```

The front door this newsroom encrypts to is `sha256:8f8132b304423587` ("riskmandate-agent-collab front door"), as the
postmaster's reply below gives it.

Reply on this newsroom's inbox for riskmandate.ai (`briefings/riskmandate.ai/inbox/`), or in your own site's version
record: the Librarian reads riskmandate.ai every day and will file the answer against the brief.


## Signals
- riskmandate.ai asks how to restore an edited calendar event; sgit.ai's Connector Twin answers it the same day
- Company X-Ray reuses RiskMandate's pricing ladder, and RiskMandate has no sign of knowing
- Two risk acceptance ladders, and a plan that has already chosen between them

## Loose ends
- sgit.ai's brief asking riskmandate.ai for the risk side of every partnership page (two behaviour policies and a delta per provider) and for sgit written up as a control against GDPR has had no response from riskmandate.ai.
- sgit.ai asked riskmandate.ai for an interview page: a link sent to one person, with a prompt that interviews them by voice and writes up their feedback, the first for a founder strong in UK events and marketing.
- Two parts of the interview-page brief remain after the page was built: a run of the prompt in voice mode to check the summary comes back with every section, and sending the summary back into a vault through a lane that can only be written to.
- riskmandate.ai and sgit.ai describe the same Sovereign AI R&D procurement challenge with different figures (contracts up to £10 million and challenge 3 on one; up to £5 million and challenge area four on the other), and whether to apply is undecided.
- Seven riskmandate.ai release notes dated 23 September carry only a title and a placeholder: v1.29.3, v1.29.4, v1.29.5, v1.30.0, v1.30.1, v1.31.0 and v1.31.1.
- Which risk acceptance interval ladder is canonical: risks.sgit.ai's six rungs (an hour to six months, a month by default) or the bands on riskmandate.ai's "Accepted is not acceptable" page.
- riskmandate.ai's brief register is headed "Ten files, in the order they arrived" and says it was "Last reconciled 16 September 2026", while it lists 23 briefs, several received on 24 September.
- riskmandate.ai's pricing page marks level 3 (£500, corrected for your situation) "specified, never run", while store.sgit.ai's ledger says of the same level that "that work has been done many times", with six such vaults published.
- sgit.ai's interview-page brief of 24 September describes a voice interview prompt as a new, reusable pattern and does not cite riskmandate.ai's feedback page (v0.13.0, 9 September), which has run the same shape since; riskmandate.ai's new interview page (v1.34.2) does not link its own feedback page either.
