Vuduvations
Sentinel Governance ProtocolSource-grounded

From vendor activity to enforceable governance state.

Turn contracts, SLAs, invoices, delivery evidence, IP obligations, service performance, and vendor actions into hard gates, payment decisions, audit trails, escalation paths, and governance-ready records.

Workspace state

Live

Workspace state

Sources, graph, scoring, actions, and exports remain connected.

Live operating state

Actions update the graph, dashboard, reports, and exports.

Sources
Graph
Health
Actions
Exports

Operating flow

Evidence becomes operating state.

The protocol structures source evidence, applies its method, records management actions, and updates the resulting operating state.

Source evidence

Contracts, SLAs, invoices, work product, vendor communications, acceptance criteria, IP language, and delivery evidence enter the protocol.

Governance graph

Vendors, obligations, SLAs, invoices, deliverables, owners, approvals, penalties, compliance gates, and evidence become mapped.

Governance scoring

MCOS calculates compliance, invoice approval status, SLA risk, penalty exposure, audit readiness, and vendor health.

Management actions

Teams validate SLAs, block invoices, release payment, confirm IP assignment, assign remediation owners, and escalate issues.

Recalculated outputs

Actions update invoice status, vendor score, compliance health, SLA risk, audit log, penalty exposure, and governance report.

Vudu Copilot

Ask about vendor status, SLA gates, or invoice holds. Answers are grounded in the live governance engine state, not a static snapshot of the contract.

Workspace modules

The durable asset is the working system behind the report.

Dashboards and exports matter. The deeper value is the structured evidence, operating state, decision logic, and management workflow that can be revisited and updated.

Vendor Dashboard

01

Shows vendor health, SLA compliance, invoice status, unresolved gates, exposure, and executive governance state.

Vendor healthComplianceExposureStatus

SLA Verification

02

Compares evidence against contractual SLAs, acceptance criteria, delivery obligations, and performance thresholds.

SLAEvidenceThresholdsExceptions

Invoice Gate

03

Blocks or releases payment based on evidence, obligations, approvals, and unresolved governance conditions.

BlockReleaseApprovalEvidence

IP Assignment Check

04

Verifies whether IP, work product, ownership, deliverables, and transfer obligations are satisfied.

IPOwnershipTransferWork product

Escalation Path

05

Turns unresolved risks into remediation owners, escalation actions, and tracked governance outcomes.

EscalationOwnerRemediationDeadline

Governance Log

06

Creates a tamper-resistant decision trail for payment, compliance, approvals, exceptions, and audit review.

Audit trailDecision logApprovalsExceptions

Management actions

A correction should change the operating record.

Validations, owner assignments, risk decisions, and approved changes are operating events. They should update the underlying state rather than remain comments beside a static report.

Management action → state update → recalculated dashboard → revised output.

Validate SLA

Recalculates state

SLA compliancevendor scoreinvoice approval statusaudit trail

Block Invoice

Recalculates state

invoice statuspenalty exposurevendor riskexecutive alert

Release Payment

Recalculates state

payment statusgovernance logvendor healthapproval record

Confirm IP Assignment

Recalculates state

IP statuscontract governance healthaudit readiness

Escalate Vendor Issue

Recalculates state

remediation planowner assignmentrisk statusgovernance report

Operating view

Governance decisions become enforceable operating controls.

Sentinel Governance turns vendor and contract evidence into payment gates, compliance checks, escalation paths, and audit-ready decisions.

Governance issue
Gate
Risk
Owner
Decision
SLA evidence missing
Block
High
Vendor Manager
Hold invoice
IP assignment incomplete
Block
Critical
Legal
Escalate
Deliverable accepted
Release
Low
Ops Lead
Approve payment
Remediation overdue
Escalate
Medium
Executive Sponsor
Assign owner

Governed output layer

Audit-ready governance enforcement package.

Sentinel Governance produces vendor compliance scoring, invoice decision logs, SLA evidence packages, IP checks, escalation paths, and board-ready audit trails.

Output package

Vendor governance report
Invoice decision log
SLA evidence package
IP assignment check
Penalty exposure summary
Remediation register
Governance log
Executive alert package
Audit trail export
PDF / JSON / CSV package

The Engine

One endpoint in. An enforced decision out.

The hard gates, the MCP tool surface, the deterministic engine and the audit chain, with a human on the loop issuing clearances — and the three ways to run it. Below that, the end-to-end journey from what you hand it to the governed endpoint.

Sentinel governance layer: agent ecosystems from Anthropic, AWS, Google, OpenAI, and Microsoft connect through one /mcp no-bypass endpoint into the engine — hard gates, MCP tools, deterministic engine, SHA-256 audit chain, grounded credit math — with a human on the loop issuing clearances, the spend it governs, and SaaS, AWS-native, and sovereign self-hosted deployment

Click to view full size — ecosystems in · one /mcp · human on the loop · three ways to run it

Sentinel end-to-end: what you give it, the deterministic engine, humans in command with request-approve-issue clearance, the audit trail and contract knowledge graph, the copilot, the portfolio command center and contract detail, and the /mcp governed no-bypass endpoint connecting Anthropic, AWS, Google, OpenAI, and Microsoft agent ecosystems plus the vendor spend it governs

Click to view full size — the seven-step journey, ending at one /mcp endpoint

Enforcement, against a named target

“The model decided” is not a control.

PwC and OpenAI now sell a native, agentic finance function built on one lab. When an AI agent books real numbers, an auditor cannot accept “the model decided” as a control. That is exactly the gap Sentinel closes: hard gates the agent cannot bypass, a tamper-resistant decision trail, and a live operating state that recalculates as actions occur.

The most audit-sensitive systems in the company, wired to a single lab, inherit that model's pricing, access, and gating exposure and still cannot prove control. Sentinel supplies enforcement the client owns, independent of which model ran the step.

Enforce-before-execution

A context layer is not an enforcement layer.

GSIs and platform vendors are security-reactive: they detect and remediate after execution. Sentinel is enforce-before-execution. The gate is open or it is not, and every decision is written to a tamper-evident SHA-256 audit chain agents cannot override.