By Design · riley-pr-check

Prove it before merge.

By Design is the governance framework for AI and applications. The package is riley-pr-check / bverify. Checks are chosen from the code under review — the 9-Layer Verification Engine — then run as the 4-Round Quadriad. A non-deterministic agent may select and start that battery. It must stay out of the tests.

  1. L7

    Agent

    A non-deterministic agent may start the battery. It stays out of the assertions.

  2. L6

    Telemetry

    Traces and ledgers have to match what the wire showed.

  3. L5

    State

    Storms, backpressure, and 429 cascades are probed on purpose.

  4. L4

    Transport

    Half-open sockets, timeouts, and wedges. The connection has to end.

  5. L3

    Wire

    Capture and decode the path. Packet Analysis lives here.

  6. L2

    Kernel

    cgroup v2 watermarks. PIDs and PTYs return to zero.

  7. L1

    Boundary

    Code, docs, the pull request, the log, and the test tell the same story.

  8. L0.5

    Parsimony

    The diff earns its size before it is written.

  9. L0

    Physical

    Bare metal, including the path between Calgary and Montreal.

The agent stays out

It may start the tests. It may only summarize them.

May

Dynamically select which tests the code needs, and start the battery.

Must not

Edit harnesses mid-run, alter assertions, mute failures, or rewrite raw results.

May only

Summarize deterministic gate output from riley-pr-check / bverify.

Upstream trail: revive_labs #932 for the 9-layer engine, #959 for sandboxed verification before calling something untestable. Surfaces: bare metal, Docker, Kubernetes, and virtualization / Cloud MicroVMs.

Four pillars

Governance with a runtime, not a checklist.

BCP-SEC-701

Security by Design

Boundaries on what an agent is allowed to execute.

BCP-PRI-201

Privacy by Design

Sensitive data is kept off the path to an external model.

BCP-GOV-401

Consent by Design

Permission and revocation are enforced, not filed as a policy PDF.

BCP-REL-301

Reliability by Design

Expected-Red, a lifecycle back to zero, and a gate that runs before merge.

Light regulatory map only: Bill C-27 / AIDA, Quebec Law 25, the EU AI Act, ISO/IEC 42001. The same prove-it posture gates a migration runway — a closed issue is not a fixed platform.