sgit newsroom v0.1.29 · snapshot 2026-09-24

Reading room · store.sgit.ai

On this page

Reading room / store.sgit.ai · raw text · live ↗

From store.sgit.ai, the page as fetched on 2026-09-25 · open the live page ↗Everything on this sheet is the source site's own text; the newsroom's chrome is outside it.

title: Every agent needs a licence to operate description: "Agent Behaviour Policies for the agents you already run: everything one can do, what you authorised it to do, and the gap between them. Fifteen applications, four levels — the pack at £10, a vault you hold the keys to at £50, corrected for your situation at £500, and two sessions with a security professional signing it at £1,500." lead: "You know what you asked for. You do not know what it can do. An Agent Behaviour Policy puts both on one page for one agent in one deployment: what it can do, what you authorised, and the gap between them. Fifteen applications, four levels, £10 to £1,500." order: 1 toc: false


Who are you?

{{who-are-you}}

The four things for sale

{{buy-cards}}

Every level is the same document. What changes is the form it arrives in and who does the correcting — and the line between the third and the fourth is the line between a thing agents do and a thing a person signs. What is actually inside one →↗

The first two arrive automatically. The top two are somebody's work. That is the line that matters when you are choosing: the pack and the vault are produced the moment you pay, and the corrected mandate and the two sessions are done by a named security professional and signed off. The method behind all four has been done many times — six vaults of it are open to read right now, linked below. {{claim:the-work-has-been-done}} {{claim:abp-templates-exist}} {{claim:abp-correction-by-a-person}} {{claim:abp-sessions-by-a-person}}

Which agent do you run?

Pick the application closest to yours and the level you want it at. The whole catalogue is here↗ — Claude Code on a machine and in CI, Claude Desktop, ChatGPT in the browser, a browser extension, GitHub Actions, a scheduled job, Gmail and Drive at read-only scope, the Microsoft 365 connector, Dropbox, n8n, and the rest. Something not on the list starts at the third level, because the first two deliver an existing template and for yours there is not one yet.

Six of these, open right now

This work has been done, repeatedly, and it is published. Not a testimonial and not a case study — the vaults themselves, each opened by a read key published on its own page. Go and open one before you buy anything here.

{{evidence}}

What the templates cost, and what they do not

The templates are free and public, with published read keys, at riskmandate.ai. That is not a generosity and it is not a funnel: a policy nobody can check is a policy asking to be trusted, and the whole point of this document type is that it can be checked. What is priced here is an instance — the same template with the mandate corrected, your name on the licence and no public key on it. The whole argument, at length →↗ {{claim:abp-catalogue-promoted}}

Paying, in three lines

You build an order in your own browser and pay on the provider's own page. No account, no cookie, and no form, input or field anywhere on this site — a build check holds that line, so filtering is buttons, quantity is buttons, and your card is somebody else's business. What reaches the payment provider is the amount and an order reference carrying the codes for what you bought. Neither payment link has been created yet — your order↗ says so on the button rather than showing something that looks live. The three steps↗ · Both rails↗ {{claim:checkout-links-not-issued}}

What this site will not tell you

Nothing here is a compliance assessment, and nothing here is a mark of conformity to a standard. Neither describes this, and that language appears on no deliverable and on no page. The company issues every opinion, with an express non-assumption of personal responsibility on its face, and the person who sells is never the person who signs.

Outputs are model generated and marked as such {{claim:transparency-article}}. Findings are triaged, never raw: recall-optimised agents run at 0.388 precision, which is about three findings in five wrong, so every finding that reaches you has been reproduced rather than reviewed {{claim:precision-0388}}.

And one sentence that a reader might expect on a page like this is not here on purpose: we do not tell you what we can and cannot read, because six questions about what leaks have not been answered yet. The disclosures page says which six↗. {{claim:cannot-read-unanswered}}


This document is released under the Creative Commons Attribution 4.0 International licence (CC BY 4.0).