← Policy gallery

CMS: AI Component Provenance Verified

error

cms_ai_provenance_verified

ai-risk-management security pure_temporal ai-governancecmsfederalhealthcaresupply-chain-securityrag-red

The provenance and integrity of AI components (models, data, code) used in production are verified.

Formula

G(ai_component → provenance_verified)

Why it matters

CMS AI Model Supply Chain & Provenance: implement System Composition Analysis to verify the origin and integrity of AI dependencies (cf. the 'Model Namespace Reuse' attack).

Examples

passes the CMS AI rule's evidence is present

fails the required control is absent

Use it

ponens policies add cms_ai_provenance_verified --into ./trace.json
ponens trace check ./trace.json