{
  "notice": "Illustrative mapping from the AI Governance Engineer Body of Knowledge v0.5.0 (not a claim of conformity)",
  "version": "0.5.0",
  "license": "CC BY 4.0",
  "licenseUrl": "https://creativecommons.org/licenses/by/4.0/",
  "schemaVersion": 1,
  "schema": "https://aigovernanceengineer.com/api/v1/schemas/control.json",
  "self": "https://aigovernanceengineer.com/api/v1/controls/aige-ctl-assure-012.json",
  "source": "https://aigovernanceengineer.com/controls/assurance-and-evidence#aige-ctl-assure-012",
  "citation": {
    "title": "AI Governance Engineering: The Thesis & Body of Knowledge",
    "authors": [
      "Jorge García Aibar"
    ],
    "parentDoi": "https://doi.org/10.5281/zenodo.22956197",
    "conceptDoi": "https://doi.org/10.5281/zenodo.22857084"
  },
  "control": {
    "id": "AIGE-CTL-ASSURE-012",
    "profile": "assurance-and-evidence",
    "url": "https://aigovernanceengineer.com/controls/assurance-and-evidence#aige-ctl-assure-012",
    "json": "https://aigovernanceengineer.com/api/v1/controls/aige-ctl-assure-012.json",
    "title": "AI Bill of Materials per Build",
    "version": "0.1",
    "status": "draft",
    "reviewerStatus": "open",
    "depth": "derived",
    "objective": "Each AI system has an AI bill of materials generated at build in a standard format (CycloneDX ML-BOM or the SPDX 3.0 AI profile), recording its models, datasets and weights with their provenance and licences, attached to its registry entry and regenerated on each build so it never drifts from the deployed system.",
    "failureModes": [
      "Nobody can say which model version, from which provenance, trained on which data, is inside a given system.",
      "The AIBOM was written once and no longer matches the deployed system.",
      "A licence or provenance change in a model or dataset does not show in the next build's AIBOM.",
      "The registry entry of the system links no AIBOM."
    ],
    "scope": "AI systems assembled from foundation models, fine-tunes, third-party datasets and libraries. The software dependencies a classic SBOM already captures are out of scope.",
    "enforcementPoints": [
      "deploy"
    ],
    "verification": [],
    "evidence": [
      {
        "artefact": "AIBOM of each build (CycloneDX ML-BOM or SPDX 3.0 AI profile), linked from the registry entry",
        "schemaId": "ai-system-register-entry",
        "schema": "https://aigovernanceengineer.com/schemas/ai-system-register-entry.v1.json",
        "layer": 2
      }
    ],
    "failureResponse": {
      "effect": "alert",
      "text": "To be specified: the source material states no failure response for this control."
    },
    "layer": 2,
    "secondaryLayers": [],
    "patterns": [
      {
        "slug": "aibom",
        "title": "AIBOM",
        "url": "https://aigovernanceengineer.com/patterns/aibom"
      }
    ],
    "seeds": [],
    "derivedFrom": [
      {
        "kind": "pattern",
        "ref": "aibom",
        "url": "https://aigovernanceengineer.com/patterns/aibom"
      },
      {
        "kind": "schema",
        "ref": "ai-system-register-entry",
        "url": "https://aigovernanceengineer.com/resources/templates#schema-ai-system-register-entry"
      },
      {
        "kind": "chapter",
        "ref": "governing-development",
        "url": "https://aigovernanceengineer.com/bok/governing-development"
      }
    ],
    "mappings": {
      "obligations": [
        {
          "id": "AIGE-OBL-EUAIA-ART11",
          "name": "EU AI Act Art. 11 technical documentation (Annex IV)",
          "url": "https://aigovernanceengineer.com/obligations/aige-obl-euaia-art11"
        },
        {
          "id": "AIGE-OBL-EUAIA-ART53",
          "name": "EU AI Act Art. 53 GPAI provider obligations",
          "url": "https://aigovernanceengineer.com/obligations/aige-obl-euaia-art53"
        },
        {
          "id": "AIGE-OBL-OWASP-AIBOM",
          "name": "AIBOM",
          "url": "https://aigovernanceengineer.com/obligations/aige-obl-owasp-aibom"
        },
        {
          "id": "AIGE-OBL-NISTRMF-MAP",
          "name": "MAP",
          "url": "https://aigovernanceengineer.com/obligations/aige-obl-nistrmf-map"
        },
        {
          "id": "AIGE-OBL-CSA-AICM",
          "name": "AICM v1.1: 247 control objectives across 18 domains",
          "url": "https://aigovernanceengineer.com/obligations/aige-obl-csa-aicm"
        }
      ],
      "iso42001": [
        {
          "id": "A.7.5",
          "title": "Data provenance"
        },
        {
          "id": "A.10.3",
          "title": "Suppliers"
        }
      ],
      "nistAiRmf": [],
      "owasp": [
        {
          "id": "llm04-2026",
          "externalId": "LLM04:2026",
          "name": "Supply Chain",
          "url": "https://aigovernanceengineer.com/resources/threats#threat-llm04-2026"
        }
      ],
      "atlas": [
        {
          "id": "aml-t0010",
          "externalId": "AML.T0010",
          "name": "AI Supply Chain Compromise",
          "url": "https://aigovernanceengineer.com/resources/threats#threat-aml-t0010"
        }
      ],
      "aiuc1": [],
      "csaAicm": [],
      "other": [
        {
          "framework": "MITRE ATLAS mitigation",
          "ref": "AML.M0023",
          "note": "AI Bill of Materials"
        }
      ]
    },
    "references": [
      {
        "n": 30,
        "title": "Pattern: AIBOM",
        "text": "Pattern: AIBOM (AI Governance Engineering Body of Knowledge v0.5.0, chapter 05 pattern catalogue). AI Governance Engineer (Jorge García Aibar). 2026-09.",
        "url": "https://aigovernanceengineer.com/patterns/aibom",
        "verified": "primary"
      },
      {
        "n": 31,
        "title": "Governing AI development",
        "text": "Governing AI development (AI Governance Engineering Body of Knowledge v0.5.0, chapter 14, section \"Annex IV, element by element\"). AI Governance Engineer (Jorge García Aibar). 2026-09.",
        "url": "https://aigovernanceengineer.com/bok/governing-development#annex-iv-element-by-element",
        "verified": "primary"
      },
      {
        "n": 32,
        "title": "Evolving AI Transparency: the AIBOM generator's new home at OWASP",
        "text": "Evolving AI Transparency: the AIBOM generator's new home at OWASP (OWASP AIBOM generator, CycloneDX output). OWASP GenAI Security Project. 2025-12-18.",
        "url": "https://genai.owasp.org/2025/12/18/evolving-ai-transparency-the-journey-of-the-aibom-generator-and-its-new-home-at-owasp/",
        "verified": "primary"
      },
      {
        "n": 24,
        "title": "OWASP GenAI LLM Top 10 2026",
        "text": "OWASP GenAI LLM Top 10 2026 (LLM01:2026 Prompt Injection to LLM10:2026 Improper Output Handling; resource page dated 3 Aug 2026). OWASP GenAI Security Project. 2026-08-03.",
        "url": "https://genai.owasp.org/resource/owasp-genai-llm-top-10-2026/",
        "verified": "primary"
      },
      {
        "n": 25,
        "title": "MITRE ATLAS data, release v2026.09",
        "text": "MITRE ATLAS data, release v2026.09 (16 tactics, 120 techniques, 88 sub-techniques, 40 mitigations; technique names and technique-to-mitigation links read from dist/v6/ATLAS-2026.09.yaml). MITRE. 2026-09-15.",
        "url": "https://github.com/mitre-atlas/atlas-data/releases/tag/v2026.09",
        "verified": "primary"
      },
      {
        "n": 5,
        "title": "ISO/IEC 42001:2023, AI management systems",
        "text": "ISO/IEC 42001:2023, AI management systems (Annex A control ids and clause numbers cited by number and short title only; the text of the standard was not opened). ISO/IEC. 2023-12.",
        "url": "https://www.iso.org/standard/81230.html",
        "verified": "secondary"
      },
      {
        "n": 3,
        "title": "Regulation (EU) 2024/1689 (AI Act), consolidated text of 2026-07-27 as amended by Regulation (EU) 2026/1744",
        "text": "Regulation (EU) 2024/1689 (AI Act), consolidated text of 2026-07-27 as amended by Regulation (EU) 2026/1744 (the articles each control maps to, as chapters 14 and 18 restate them). Publications Office of the EU (EUR-Lex). 2026-07-27.",
        "url": "https://eur-lex.europa.eu/eli/reg/2024/1689/2026-07-27/eng",
        "verified": "primary"
      }
    ],
    "implementationNotes": [
      "Generate the AIBOM in the build, for example with the OWASP AIBOM generator (illustrative), covering models, datasets and weights with their provenance and licences.",
      "Transparency documents can be generated from the AIBOM, as the pattern notes; chapter 14 draws Annex IV items 1(b) and 1(c) (interaction with other systems; software versions) from it."
    ],
    "openQuestions": [
      "Verification procedure to be specified: the derivation adds no check its source material does not state; requires technical review.",
      "Should a build fail when its AIBOM changes in a way nobody approved (a new model, dataset or licence), or only flag the difference for review?"
    ],
    "observation": null,
    "observationSchema": "https://aigovernanceengineer.com/schemas/control-observation.v1.json",
    "examples": []
  }
}
