Where its siblings discover, operate, and remember, this system decides: given everything we know — what should we do, are we allowed to do it, and who must say yes?
Proposal → Evidence Package → Criterion Scores (code) → Policy Findings (code, Bob-built engine) → Governance Verdict → RECOMMENDED → Studio Head signal (approve / reject / request revision) → AUTHORIZED → Authorized Software Objective → IBM Bob → ACTIONED → CLOSED → DataHub
COMPLIANT / VIOLATION / NEEDS_REVIEW / EXEMPT, each finding citing its
clause. The governance verdict is a function of findings.| Evidence | Where |
|---|---|
| Bob-built policy engine and policy packs | app/governance/ · policy/ |
| Bob-built console dossier panel | frontend/components/PolicyFindings.tsx |
| Session records, plans, diffs | docs/bob-evidence/ |
| Software-Action delivery | attached to the decision dossier |
Bob is used exactly as the track prescribes — in the development process — while the shipped runtime's AI is Gemini on Vertex only.
cd ops && docker compose up -d && cd .. # PG · NATS · Temporal · Redis · MinIO python3.12 -m venv .venv && .venv/bin/pip install -e ".[dev]" .venv/bin/python -m seed.proposals # flagship proposal fixture .venv/bin/uvicorn app.main:app --port 8030 # API (boots in MOCK mode without keys)