AAtlasAI Governance
Workspace edition · batch cadence
Single tenant · no live integrations
Selerix · ProductionBatch 2026-07 · synced 13 Jul · next 27 Jul
6KC
Overview

Governance overview

Portfolio, obligations, and control status as of batch 2026-07 — covering internal agents, vendor-platform agents, and every team in scope. Six items need attention before the 27 Jul cycle.

8 +4
Agents governed
8 internal · 4 vendor platforms
23/23
Use cases tiered & owned
100% coverage
6
Needs attention
1 sign-off · 5 client inputs
0
Open AI incidents
1 near-miss YTD · closed
43
Decisions on record
append-only · 0 edits

Dimension status

Weight = regulatory pressure + data exposure + gap · recalculated per batch
DimensionPillarWeightMaturityOpen itemsNext review
D6 · Data AuthorizationFoundations9 · Critical 1.0 / 41 rule review due27 Jul
D2 · Exposure TieringOutward-facing risk9 · Critical 1.5 / 4027 Jul
D10 · Audit & AssuranceTechnical assurance9 · Critical 1.0 / 42 evidence gaps · T427 Jul
D8 · IncidentsOutward-facing risk8 · Critical 1.0 / 4runbook in draftSep 26
D1 · Decision Rights & PortfolioStrategy7 · Elevated 2.0 / 41 sign-off · 2 assessments27 Jul
D5 · Vendor ExposureEconomics6 · Elevated 1.5 / 44 embedded-AI flagsQ3 scan
D7 · Cost & Value ActivatedEconomics6 · Elevated 1.5 / 43 metered lines on watchMonthly
D9 · Workforce CapabilityStrategy5 · Standard 3.0 / 4leadership session AugAug 26
D11 · Brand & TrustOutward-facing risk5 · Standard 1.0 / 4profile in draftQ4 26
D3 · Lifecycle HealthFoundations4 · Standard 2.0 / 45 graduations blocked27 Jul
D4 · EvaluationTechnical assuranceDeferred · DEC-0022live-state preview readyQ1 27
D12 · Agent SafetyTechnical assuranceDeferred · DEC-00222 platform-agent flags liveQ1 27

Tasks due before next batch

27 Jul 2026
Payroll calendars — scope decision on Pay Period rulePilot-client audit finding · awaiting sponsor & COO-office sign-offSign-offD1
Rate conversion — system-ready rate exemplarPending from client · graduation-to-skill triggerClient inputD3
JScript write-audit — object-model export + corpusPending from client · prompt → skill graduationClient inputD3
Inforce reconcile — tier/plan crosswalk + match keysPending from clientClient inputD3
Verify BAA eligible-services listMonthly re-verification · rule set v1.2ScheduledD6

Recent decisions

append-only ledger · newest first
DEC-0043Agent composition standard adoptedUse cases cluster by workflow · skill · data affinity · 11 JulApproval
DEC-0042Cost & Value activated ahead of scheduleToken economics adopted as programme module · 10 JulActivation
DEC-0041Add-in surfaces set to Never for member dataPending BAA coverage change · 30 JunRule
Workspace · Agent registry

Agent registry

Every agent in scope for the organisation — 8 internal agents composed from the 23 Phase 1 use cases, and the vendor-platform agents arriving inside existing contracts. Internal agents cluster on workflow affinity · skill affinity · data affinity. Open any agent to see its composition.

All · 12BenAdmin · 5ACA · 3Vendor platforms · 4T4 · 3Awaiting input · 4

BenAdmin agents · 5

composed from 13 team use cases · live build · Jul 2026
Case Setup AgentTurns client & carrier documents into system-ready configuration 4 casesT3Projects + files1 sign-off · 2 inputsDec 26

Affinity basisworkflow — implementation build · skill — extract → transform → propose · data — implementation workbooks & carrier documents

Use caseSourceVehicleBoundaryTier
Carrier tab fillCSM-6Prompt + skillFills only mapped fields · output feeds apply-fills toolT3
Form library updateSS-3Prompt · draftPropose-don't-execute · marked-up template + worksheetT3
Payroll calendarsSS-6Prompt v2Pay Period rule awaiting scope sign-off · closes 4 audit findingsT3
Rate conversionSCA-1PromptTranscribe-don't-invent · math shown per lineT3
Data Integrity AgentFinds what is missing, mismatched, or broken in enrolment data 3 casesT4Projects · paste-inCrosswalk pendingSep 26

Affinity basisworkflow — reconciliation & data QA · skill — compare & flag-don't-fix · data — census, coverage, carrier feeds

Use caseSourceVehicleBoundaryTier
Workbook gap checkCSM-1Prompt + skillFlags gaps only · never fillsT2
Inforce reconcileEDI-3Prompt + skillPaste-in ≤400/600 rows · above caps → skill route (DEC-0029)T4
Feed-error explainEDI-4Prompt + golden setReads Error Library every run · explains, never edits feedsT3
Config QA AgentTests changes, triages tickets, writes and audits platform scripts 3 casesT3Chat · ProjectsCorpus pendingJan 27

Affinity basisworkflow — change QA · skill — test, diagnose, audit · data — change tickets & platform scripts

Use caseSourceVehicleBoundaryTier
Test scenariosFSQ-1Prompt + skillScenario scaffold + past-change exemplarsT2
Ticket triageFSQ-5Prompt + rule libraryRoutes by root cause · never adjudicatesT3
JScript write-auditSCA-3Prompt → skillObject-model reference inline · graduates on client corpusT2

Vendor & platform agents · 4 platforms

agents arriving inside existing contracts · same registry, same rules
Platform & agentsFunctionAccess todayGovernance statusNext
HubSpot BreezeCustomer · Prospecting · Data agents · Assistant on every seatSales & MarketingAssistant live on all seats · agents credit-meteredIntake pendingQ3 intake
monday.com agentsNative agents shipped to all customers · Agent AccountsPMO · case boardsLive in tenant, no setup required — boards hold client caseworkLive in tenantToggle audit · Jul
Microsoft 365 CopilotCopilot chat + agents in Teams / SharePointOrg-wide productivityFeatures auto-enabled Q2 · per-seat licence not purchasedInventoriedQ3 scan
Zoom AI CompanionMeeting summaries · draftingMeetings org-wideDefault-on with paid seats · client calls in scopeInventoriedQ3 scan
Product & engineering AI enters the registry at Q3 intake — governance covers the whole organisation, not one workstream
Foundations · D6 · Data Authorization · Weight 9 · Critical

Data Authorization

The most consequential table in the workspace: which AI surface may touch which data class. PHI rows are decided by verified BAA coverage — never by convenience. One near-miss YTD was caught by exactly this discipline.

Coverage is not uniform across the vendor's own products. Chat and Projects sit under the executed BAA; the Excel/PowerPoint add-ins and the desktop agent product do not (today). The matrix below is why that distinction is enforced as a rule, not a habit. Monthly verification due 27 Jul.

Authorization matrix · rule set v1.2

R-101 – R-120 · verified 13 Jul
SurfacePHI / member dataClient-confidentialInternalPublicRule
Claude chat BAA workspaceMin-necessaryAllowedAllowedAllowedR-101
Claude Projects BAA workspaceMin-necessaryAllowedAllowedAllowedR-102
Excel / PowerPoint add-ins not on eligible-services list todayNeverNeverAllowedAllowedR-104
Desktop agent (Cowork-class) not covered today · re-review on vendor changeNeverNeverCase-by-caseAllowedR-105
Connectors (M365 · Monday · Zoom) Work Orchestration pilot scopeMin-necessaryRead scopeAllowedAllowedR-112
AI Gym environmentNeverAnonymised onlyAllowedAllowedR-110
Personal AI accountsNeverNeverNeverAllowedR-120

Coverage verification history

monthly + on vendor change
DateCheckResultAction taken
13 Jul 26Eligible-services list vs live surfacesMatchNone required
27 Jun 26Training material surface referencesMismatch foundSlide corrected pre-delivery · logged NM-001 · DEC-0038 gate added
31 May 26Baseline — BAA scope vs planned surfacesMatchRule set v1.2 issued
Workspace · Decision log

Decision log

Append-only record of approvals, rules, corrections, activations and deferrals — grouped by what each decision governs. Entries cannot be edited after commit; supersessions link forward.

Append-only ledger. 43 entries · 0 retroactive edits · integrity check passed at batch 2026-07.
AllApprovalsRulesCorrectionsActivationsDeferrals
IDDateDecisionTypeDecided byLinks
Programme & tiering
DEC-004311 JulAgent composition standard adoptedUse cases cluster into agents on workflow · skill · data affinityApprovalSteering committeeRegistry
DEC-004210 JulCost & Value (D7) activated ahead of scheduleToken economics adopted as programme module · partially supersedes DEC-0022ActivationSC · CFO endorseD7
DEC-003519 JunFive-tier exposure model v1.0 adopted; all 23 use cases classifiedApprovalSteering committeeD2
DEC-002202 JunD4, D7, D12 deferred to Q1 27 reviewD7 portion superseded by DEC-0042 · deferral on record by designDeferralSteering committeeScorecard v1
Surfaces & data authorisation
DEC-004130 JunExcel/PowerPoint add-ins → Never for member dataPending BAA coverage change · re-review on vendor change or quarterlyRuleSteering committeeR-104 · D6
DEC-003827 JunTraining material corrected pre-delivery; surface gate added"Work with the real file" guidance restricted to covered surfacesCorrectionCompliance leadNM-001
BenAdmin agents
DEC-003316 JunWork Orchestration Agent approved as pilot with connector scope limitsM365 + Monday + Zoom read scope · min-necessary on covered surfacesApproval · condSC + ComplianceA-2026-016
DEC-002909 JunData Integrity paste-in caps set — ≤400 carrier / ≤600 census rowsAbove caps → skill route with file handlingRuleCustodian + EDI leadInforce reconcile
Vendors & platforms
DEC-004029 JunQuarterly embedded-AI vendor scan establishedPlatform agents added to scan scope Jul 26CadenceCustodianD5 · D12
Showing 9 of 43 · grouped by governed object · newest first within groups
Outward-facing risk · D2 · Exposure Tiering · Weight 9 · Critical

Exposure Tiering

Five tiers, adopted as v1.0 (DEC-0035), assigned by a scored five-question protocol — deterministic by design: same inputs, same tier, every time. The empty T5 row is the point: nothing here warrants prohibition-level exposure, and the model proves that rather than asserting it.

23 +8
Classified
use cases + composed agents
4
T4 use cases
quarterly re-tier · full packs
0
T5
prohibition list empty

Tier definitions · v1.0

TierMeaningCountControls
T1Internal · no client or member data0AUP only
T2Internal work product · anonymised or internal data6Tower-owner approval
T3Client-facing output · human reviews before send13Named reviewer · SC approval
T4Regulated-adjacent or connector-scope work4Joint approval · full evidence pack · quarterly re-tier
T5Prohibited — autonomous regulated decisions, PHI on uncovered surfaces0No path — bright line

Scored protocol · 5 questions

0–14 → tier
QuestionScores
Q1 · Highest data class touched0–3
Q2 · Audience of the output0–3
Q3 · Regulatory adjacency0–3
Q4 · Error blast radius0–3
Q5 · Autonomy of action0–2
0–2 → T1 · 3–5 → T2 · 6–8 → T3 · 9–11 → T4 · 12–14 or any bright-line hit → T5 · two assessors, independent scores
Technical assurance · D10 · Audit & Assurance · Weight 9 · Critical

Audit & Assurance

"A human reviewed it" must be provable. Every T3+/T4 workflow carries a four-part evidence pack — configuration, boundary rules, review record, outcome sample — assembled on demand for a client audit, a DOL inquiry, or an OCR question.

2/4
T4 packs complete
2 gaps in flight
2
Audit packs delivered YTD
sponsor questionnaire · broker RFP
< 1 day
Pack assembly time
target for any examiner ask

Evidence completeness — T4 and highest-volume T3

4 components per pack
Workflow · agentConfigBoundary rulesReview recordOutcome samplePack
File triage & fix-it note Filing Data Agent · T4HeldHeldHeldHeld4/4
Intake snapshot Filing Data Agent · T4HeldHeldHeldHeld4/4
Inforce reconcile Data Integrity Agent · T4HeldHeldHeldGap3/4
FLOW orchestration Work Orchestration Agent · T4 pilotHeldHeldGapHeld3/4
Gaps assigned with owners · close-by 27 Jul · OCR dry-run pack in draft as the Q3 exercise
Technical assurance · D12 · Agent Safety · Deferred · watch flags live

Agent Safety

No internal agent has write scope today — so full agent-safety controls are deferred honestly rather than performed. What is not deferred: the watchlist. Vendor platforms are shipping agents into the tenant right now, and named internal triggers would activate this dimension the day autonomy arrives.

Watchlist — live flags

reviewed each batch
FlagWhat's happeningWhy it matters hereStatus
monday.com native agentsPlatform shipped agents to all customers, no setup required · Agent Accounts let external agents authenticate into tenantsBoards hold live client casework — an agent acting on them would be an ungoverned write actorLive in tenant
HubSpot Breeze agent lineupCustomer, Prospecting and Data agents GA · Assistant on every seat · outcome-based pricingAutonomous client-facing replies drafted from CRM data — brand and advice-bounds exposureIntake pending
Recap & board write connectorCaseload Agent's natural next step is writing recaps onto boards directlyFirst internal write scope — crosses the autonomy lineTrigger armed
FLOW write-backWork Orchestration pilot could graduate from read + draft to task write-backSame line, wider surface (M365 · Monday · Zoom)Trigger armed
Activation switches on: autonomy fields in the registry · action logging · kill-switch standard · autonomy budget per agent
Workspace · Obligations

Obligations register

The regulatory surface Selerix's AI programme answers to — federal frameworks in force, state AI statutes, and what is on watch. Each obligation maps to the controls that satisfy it. Prepared with programme counsel input; not legal advice.

All · 10Federal · 6State · 4In force · 7On watch · 3
ObligationStatusWhat it demands of AI useMapped controlsReview
Federal
HIPAA Privacy & Security Rules45 CFR 160/164 · PHI at the core of the platformIn forceMinimum-necessary PHI on covered surfaces only · BAA before any disclosure to an AI vendorD6 · R-101–120Monthly
HIPAA Breach Notification45 CFR 164.400+ · 60-day clockIn forceAI data-handling failures assessed as potential breaches · evidence & timeline disciplineD8 · severity matrixPer event
HIPAA Security Rule NPRMProposed rewrite · asset inventories, mandatory risk analysisProposedIf finalised: written inventory of systems touching ePHI — the AI registry becomes compliance evidenceRegistry · D6Quarterly
ERISA fiduciary duties + DOL FAB 2026-01Process-not-results standard for plan administrationIn forceDocumented, prudent process where AI touches plan administration · human accountability preservedD1 matrix · D10 packsQuarterly
DOL cybersecurity guidanceExtends to all plan service providersIn forceAI vendors inside the security programme · client diligence answers readyD5 book · D11 profileSemi-annual
IRS ACA reporting §6055/60561094/1095 accuracy · penalty exposure per returnIn forceAI-assisted filing work needs accuracy evidence and human sign-off before submissionFiling Data Agent · D10Filing season
State
Texas TRAIGA (HB 149)Home state · effective 1 Jan 26In forceProhibited-use lines · NIST AI RMF alignment is a statutory safe harbour — the Canon maps to RMFScorecard · policiesQuarterly
Illinois HB 3773AI in employment decisions · client employers affectedIn forceNo AI-driven adverse employment inference in Selerix workflows · client-facing answer preparedD2 tiering · D11Semi-annual
Colorado SB 26-189Replaced repealed SB24-205 · obligations 1 Jan 27Jan 27Consequential-decision framework · registry + tiering position early complianceRegistry · D2Q4 26
State AI patchworkMulti-state client base · new bills each sessionWatchQuarterly horizon scan folded into batch reviewD5/D11 cadenceQuarterly
10 obligations · 7 in force · 3 on watch · mapped controls current at batch 2026-07
Strategy · D1 · Decision Rights & Portfolio · Weight 7 · Elevated

Decision Rights & Portfolio

Who approves what, and the org-wide AI portfolio those decisions govern. Every use case has a named approver and a tier-driven approval path — the ERISA "prudent process" answer.

100%
Portfolio with named approver
no orphaned use cases
3
Pending decisions
oldest 9 days
4.2 days
Median time-to-decision
target ≤ 7
5
Functions in portfolio
Eng & Product intake Q3

Approval queue · 3

the assessment sits behind each pending decision
DecisionWaiting onHolderAge
Payroll calendars — Pay Period scope ruleCase Setup Agent · pilot-client audit finding · option (b) recommended with named-reviewer check on every derived rowSign-offSponsor & COO office9 days
New use case — Broker RFP supportScored 6 → Tier 3 proposed · conditions drafted: named reviewer, house voice pack, no commercial commitments from a draftCompliance endorseCompliance lead5 days
Engineering & Product AI intakeCode assistants + in-product AI · same intake door, same protocol · nothing scored until intakeScheduledProduct leadershipQ3

Portfolio by function

org-wide
FunctionAgentsUse casesHighest tierState
BenAdmin operations513T4Live build · 4 awaiting inputs
ACA services310T4Gym live · promotion re-tiers
Sales & Marketing1 proposedTBDBroker RFP in queue · HubSpot intake pending
PMO & workplaceTBDmonday / M365 / Zoom platform agents inventoried
Engineering & ProductTBDQ3 intake scheduled

Decision-rights matrix

v1.0 · charter at sign-off
DecisionDecidesConsultedInformed
New use case · T1–T2Tower ownerCustodianSC digest
New use case · T3Steering committeeComplianceSponsor & COO office
New use case · T4SC + Compliance jointlySecurityExecutive team
Surface / data-class changeSC on custodian briefSecurity officerAll users · AUP note
Exception to a Never ruleNo path — bright line
Outward-facing risk · D8 · Incidents · Weight 8 · Critical

Incidents

Zero open incidents — and a discipline built so the first real one is handled inside HIPAA's 60-day clock, not discovered against it. Near-misses are captured deliberately: the programme's one save so far produced a permanent gate.

0
Open incidents
YTD
1
Near-miss captured
caught pre-delivery → DEC-0038
3
Tabletops scheduled
W3 safety practices

Severity matrix

runbook v0.4
SevDefinitionClock
S1Confirmed PHI on an uncovered surface / disclosureBreach analysis immediately · 60-day notification clock governs
S2PHI-adjacent handling failure, contained before disclosure24-hr assessment · compliance determination
S3Erroneous AI output reached a client48-hr correction + client note
S4Boundary violation, internal onlyBatch review
NMNear-miss — caught before impactLogged · pattern review quarterly

Register

complete YTD
IDEventOutcome
NM-00127 Jun · Workshop slide suggested "work with the real file" on a surface outside BAA coverage · caught in pre-delivery reviewCorrected before any exposure · surface gate added to all training material (DEC-0038) · closed

Tabletop scenarios — scheduled, hypothetical

no real incidents behind these
ExerciseScenarioWhat it rehearsesSev
TT-01A CSM pastes an un-anonymised client census into a chat while rushing a renewal — a colleague notices before sendContainment · who calls compliance · evidence capture in the first hourS2
TT-02An unreviewed AI recap with a stale renewal date is emailed to a client, who forwards it to their brokerCorrection protocol · client note in house voice · named-reviewer gap analysisS3
TT-03An 834 segment containing member identifiers is pasted into a carrier portal's embedded AI chat to "decode an error"Breach analysis · 60-day clock mechanics · vendor-surface boundary refresherS1
Each exercise ends with a timed debrief against the runbook · findings feed runbook v0.5
Economics · D7 · Cost & Value · Activated · DEC-0042

Cost & Value

Activated ahead of the original deferral — because AI cost stopped being one licence line. The operating principle: cost follows autonomy. Humans-in-chat cost a flat seat; the moment work graduates to skills, agents and platform toggles, cost becomes metered.

Illustrative figures. Dollar amounts on this page are programme estimates at list pricing for teaching and planning — not invoices. Token economics is now a taught module in the AI Gym.
~$2.1K/mo
Estimated AI spend today
seats ≈ 90% of it
73%
Seat utilisation · 30 seats
9 daily · 13 weekly · 8 light
3
Metered lines on watch
tokens · credits · per-seat creep
Aug
Value evidence lands
blind-eval + time-capture readout

Cost lines — every source, one table

reviewed monthly
LineModelToday · est.What moves itWatch
Claude seats · 30Fixed per-seat~$1.9K/moHeadcount only — usage inside a seat is free at the marginStable
API tokens at skill graduationMetered per run~$120/moEach prompt → skill graduation moves runs from seat to meterWatch
M365 Copilot$30/user/mo if licensed$0 today30 seats would add ~$900/mo — governance position before licensing, not afterCreep risk
HubSpot Breeze creditsCredit-metered · outcome-priced$0 todayCustomer Agent bills per resolution once enabled — cost scales with autonomyWatch
monday.com agentsIncluded today · pricing evolving$0 todayVendor pricing for agent actions under review industry-wideMonitor
Zoom AI CompanionBundled with paid seats$0 marginalNo direct line — exposure is data, not dollarsStable

Unit economics — the teaching card

AI Gym token module
Inforce reconcile, one run: ~90K input tokens + ~8K output ≈ $0.31/run at API list. At 150 reconciles a month ≈ $47/mo — replacing hours of side-by-side comparison per run. Fix-it note, one run: ~25K in + ~3K out ≈ $0.10/run.

The lesson the cohorts learn: token cost is almost never the constraint — review capacity is. The economics justify far more automation than the named-reviewer gates currently allow, which is exactly why the gates, not the budget, are the control.

Usage distribution — 30 seats

Jul batch
BandSeatsProfile
Daily9ACA analysts + EDI — Gym habits carried into live work
Weekly13CSM + Shared Services — workflow-triggered use
Light8Adjacent roles — coaching targets for the W6 champion push
Utilisation is the leading value indicator this early — the Aug readout pairs it with blind-eval quality scores and time capture
Board pack · generated from the register

AI governance — board report

Selerix Systems · batch 2026-07 · generated 13 Jul 2026 · 9 pages
12Agents governed
23/23Tiered & owned
0Open incidents
43Decisions on record

What the board is being asked to note

Every AI use case in scope carries a named owner, an exposure tier and a recorded decision. Two dimensions remain deferred on the record (DEC-0022) with live watch flags; one scope decision is waiting on the sponsor and COO office before the 27 Jul cycle.

Exposure position

Four use cases sit at T4 with full evidence packs required; the prohibition tier is empty. Data authorisation is enforced per surface — PHI is permitted only where BAA coverage is verified monthly, and the one near-miss this year was caught by that check before any exposure.

What changes next cycle

Two audit-evidence gaps close by 27 Jul. Vendor-platform agents already live in the tenant enter the registry before any enablement. Cost and value reporting is now active, ahead of the original deferral.