⚠ Not built. SG/Sentinel is a published design from May 2026 — “this is how I would build it” — not a product. No plans to build it unless somebody funds it. Read the note →
sg-sentinel.sgit.ai / documents / compliance

Compliance As A Living Graph: Mapping Standards To What SG/Sentinel Actually Deploys

TypeArch / strategy brief Versionv0.27.58 Date18 May 2026 AuthorDinis Cruz (project lead) and collaborators LicenceCC BY 4.0 Sourceraw markdown · view on GitHub

Summary

Compliance as a computed property of the running system, not a checkbox: build graph-based versions of the major standards (GDPR, ISO 27001, OWASP Top 10, OWASP AI), map each requirement to the platform capabilities and Sentinel rules that satisfy it, and the posture becomes a live readout — enable a logging rule and specific requirements flip to met; disable it and they flip back. The platform contributes inherent properties (encryption, zero-knowledge, audit trails) for free; Sentinel contributes the dynamic, rule-dependent ones. Specific and computed also means validatable by third parties — the opposite of a vague claim.

Key concepts

Key ideas

On this site

On the roadmap's deferred list; its business-value framing informs how the site presents the compliance direction without overclaiming.

Read the document

📄 Original document · v0.27.58 · 18 May 2026 · rendered from the raw markdown (the source of truth)