Agentic Covenants / Agentic Sentinels Matrix
Authorization at Server-side enforcement
This layer is external-and-authoritative.
RBAC denial events from K8s audit; IAM Access Analyzer findings; Kyverno PolicyReports; OPA decision logs centralized.
Maps to
- NIST CSF 2.0
- DE.CM-01, DE.CM-09, DE.AE-02
- Other
- NIST SP 800-207