{
  "notice": "Illustrative mapping from the AI Governance Engineer Body of Knowledge v0.5.0 (not a claim of conformity)",
  "version": "0.5.0",
  "license": "CC BY 4.0",
  "licenseUrl": "https://creativecommons.org/licenses/by/4.0/",
  "schemaVersion": 2,
  "schema": "https://aigovernanceengineer.com/api/v1/schemas/obligation.json",
  "self": "https://aigovernanceengineer.com/api/v1/obligations/aige-obl-cn-tc260-agents.json",
  "source": "https://aigovernanceengineer.com/obligations/aige-obl-cn-tc260-agents",
  "citation": {
    "title": "AI Governance Engineering: The Thesis & Body of Knowledge",
    "authors": [
      "Jorge García Aibar"
    ],
    "parentDoi": "https://doi.org/10.5281/zenodo.22956197",
    "conceptDoi": "https://doi.org/10.5281/zenodo.22857084"
  },
  "obligation": {
    "id": "AIGE-OBL-CN-TC260-AGENTS",
    "url": "https://aigovernanceengineer.com/obligations/aige-obl-cn-tc260-agents",
    "json": "https://aigovernanceengineer.com/api/v1/obligations/aige-obl-cn-tc260-agents.json",
    "framework": "China",
    "frameworkId": "cn-tc260-framework",
    "clause": "Framework 3.0 Appendix 2",
    "obligation": "TC260 Framework 3.0 Appendix 2: agentic AI risk management (voluntary; 2026-09-14)",
    "requirement": "Unique identity and least-privilege permissions per agent by decision mode; human checkpoints with tamper-proof approval logs and deny-by-default; tool and skill verification; runtime guardrails (alert, restrict, intercept, suspend, terminate); memory isolation with no credentials in memory; mutual authentication; sandbox validation, red teaming and re-validation on major change; controlled decommissioning",
    "artefact": "Agent registry with identity and scope; approval-log store; tool allow-list with integrity checks; runtime guardrails and kill switch; memory-scope policy; decommissioning runbook",
    "layers": [
      2,
      3,
      4,
      5
    ],
    "dutyHolder": null,
    "scope": null,
    "authority": null,
    "appliesFrom": null,
    "appliesStatus": "voluntary",
    "appliesNote": "Voluntary; published 2026-09-14",
    "milestones": [],
    "systemClass": [],
    "patterns": [],
    "crosswalkTopics": [
      "inventory-registration",
      "logging-traceability",
      "human-oversight",
      "runtime-guardrails",
      "robustness-security-evals",
      "incident-monitoring",
      "supply-chain",
      "agent-identity-autonomy",
      "sandboxes-real-world-testing"
    ],
    "reviewed": "2026-09-20",
    "chapter": "https://aigovernanceengineer.com/bok/regulatory-map#china"
  }
}
