sgit newsroom v0.1.29 · snapshot 2026-09-24

Reading room · riskmandate.ai

Reading room / riskmandate.ai · raw text · live ↗

From riskmandate.ai, the page as fetched on 2026-09-24 · open the live page ↗Everything on this sheet is the source site's own text; the newsroom's chrome is outside it.

Business cases, by the risk they change

A new section, from the lead's memo of today (D16↗). The business case for a security product is a difference: the risk register for an agent deployment without it, and the register with it, from the operator who is paged to the board that has to defend it. The memo asked for it to serve three readers at once: people buying security, the companies building it, and us. And it asked whether earlier work already covered risks owned at several altitudes. It does: the RiskGraph Explorer demo holds 49 facts, 49 risks and ten roles escalating to the board, and this section runs on that model rather than a new one.

What was not done: two named cases, agentgateway and Auth0 for AI Agents, are built from their own documentation but kept as drafts. They are unlisted and marked noindex until the lead decides to send them to the vendors, which the section's rules require before anything about somebody else's product is listed. Products whose effect the sixteen questions do not ask about cannot yet be expressed. And a test now fails if a menu group's entries are split in the page list, after placing the new entries inside the More group split it in two and pushed the header past 1280 pixels on every page, before this release.