Appendices

Control Quick Reference

This reference lists all 48 Continuum/AI controls with their identifier, title, and minimum certification profile.

Governance (GOV)

IDTitleProfile
GOV-01Acceptable Use PolicyEssential
GOV-02Ownership AssignmentEssential
GOV-03Agent InventoryStandard
GOV-04Human Oversight PolicyStandard
GOV-05Risk Assessment CadenceElevated

Identity (IDN)

IDTitleProfile
IDN-01Agent IdentityStandard
IDN-02Server AuthenticationStandard
IDN-03Credential ManagementElevated
IDN-04Credential RotationCritical

Authorization (AZN)

IDTitleProfile
AZN-01Least PrivilegeEssential
AZN-02Resource Scope LimitationStandard
AZN-03Temporal ConstraintsStandard
AZN-04Action FilteringElevated
AZN-05Delegation ConstraintsElevated

Data Protection (DAT)

IDTitleProfile
DAT-01Data ClassificationEssential
DAT-02Access Restrictions by ClassificationEssential
DAT-03Encryption in TransitStandard
DAT-04Encryption at RestElevated
DAT-05Output SanitizationElevated
DAT-06Retention LimitsCritical

Input Validation (VAL)

IDTitleProfile
VAL-01Input SanitizationEssential
VAL-02Injection DetectionEssential
VAL-03Source VerificationStandard
VAL-04Content Boundary EnforcementElevated
VAL-05Adversarial TestingCritical

Execution Security (EXE)

IDTitleProfile
EXE-01Process IsolationEssential
EXE-02Resource LimitsStandard
EXE-03Network SegmentationStandard
EXE-04Filesystem RestrictionsElevated
EXE-05Code Execution ControlsCritical

Observability (OBS)

IDTitleProfile
OBS-01Action LoggingEssential
OBS-02Session CorrelationStandard
OBS-03Immutable Audit TrailElevated
OBS-04Anomaly DetectionElevated
OBS-05Confluence MonitoringElevated
OBS-06Retention ComplianceCritical

Intervention (INT)

IDTitleProfile
INT-01Pause CapabilityStandard
INT-02Approval WorkflowsElevated
INT-03Automated ContainmentElevated
INT-04Escalation ProceduresCritical

Resilience (RES)

IDTitleProfile
RES-01Incident ClassificationStandard
RES-02Containment ProceduresElevated
RES-03Forensic PreservationElevated
RES-04Recovery ProceduresCritical

Supply Chain (SUP)

IDTitleProfile
SUP-01Dependency InventoryStandard
SUP-02Dependency AssessmentElevated
SUP-03Prompt Supply ChainElevated
SUP-04Integration MonitoringCritical
Previous
Agent chains