Skip to main content
A regulated financial institution expects an enterprise AI platform to satisfy a baseline of residency, isolation and control conditions plus a long list of technical and functional capabilities. The platform side of that baseline lives in AgenticOrg (docs/bfsi/ in that repository). This page lists the items where Grantex is the authority primitive the platform relies on, what exists today with repository evidence, and the capability group each item belongs to. Identifiers follow the AgenticOrg catalogue.

Where Grantex is the primitive

Reading the status

  • Covered: the primitive exists in product form with tests. Partial: part of it exists or it exists for one surface only. Gap: nothing usable exists yet.
  • The gateway (packages/gateway) verifies grant tokens locally by default; with currentAuthorityCheck: true it verifies every request against the issuer, so revocations and emergency stops take effect on the next request rather than at token expiry. Deployments where a stop must be immediate turn it on.
  • Capability groups name the product area that owns an item: WP-01 operator override, WP-05 agent registry and certification, WP-08 governance inventory, WP-19 residency controls, WP-21 authority layer hardening (credential-by-reference exchange, lifecycle states and attestation types, risk tiers on manifests, tool-qualified scopes in the SDKs). A group carries no delivery commitment.
Last modified on October 2, 2026