🗺 Governance
Governance on CCAR-P is an architecture question wearing a compliance costume. Items describe a deployment — a regulated industry, an agent with tool access, a shared knowledge base — and ask which control actually holds. The trap is answering at the prompt layer: add an instruction, a refusal rule, a policy document, a training session. Instructions are advisory, and a model can be argued out of them by the very content you were worried about. Controls that hold are deterministic and live outside the model: scoped credentials, tool allowlists, schema validation, spend and rate ceilings, an approval gate in front of the irreversible step, append-only logs the agent cannot write to.
The idea that unlocks the domain: treat Claude as an untrusted actor inside your own trust boundary, and treat every token it did not author — retrieved chunks, tool results, user uploads, its own recalled memory — as hostile input. Every governance question then reduces to one placement decision: where does the control point sit relative to the action that cannot be undone.
200, the model reports done, the effect was wrong. Verify the effect, not the response.GRAIL — the order to build governance in, from the risk to the record.
Use it when a scenario hands you an agent with real-world side effects and asks what to add: walk GRAIL and answer at the first letter the design is missing.
Practise this domain with original, exam-style questions.
Start practising free