PolicyWatcher
Loading verified public evidence
The page will appear when its current evidence state is available.
PolicyWatcher
The page will appear when its current evidence state is available.
PolicyWatcher includes goal-driven evidence workspaces in addition to static dashboard views. Workspace configuration records the user objective, requested evidence depth and modules that remain unavailable until source requirements are met.
Ten evidence-backed module checks separate shipped capability from architectural opportunity. References point to the implementation inspected for this snapshot.
Five-step cascade: direct, HTTP/2, Renderer, Wayback and Common Crawl.
The mass scan loop is still sequential; move long-running work behind a durable queue.
scraper.ts · cron/check-all/route.tsStructured output is schema-validated; Beta 42 includes a golden set and AI telemetry.
The model produces the score. Input is capped at 45,000 characters or 22,000 + 22,000, not scored by a deterministic formula.
gemini.ts · geminiPolicySchema.ts · golden-set.v1.jsonSQLite backs 31 Prisma models, including five additive canonical evidence models; AI telemetry and access logs have a 90-day retention policy.
Canonical backfill is not active and PolicyCheckLog has no explicit retention policy.
prisma/schema.prisma · aiTelemetry.tsSigned sessions and roles are present.
Credentials are shared by role, with no individual identity or central revocation; rate state remains in memory.
adminAuth.ts · rateLimit.tsDashboardClient is about 3,181 lines and 125 KB; the public “map” is an impact matrix.
Decompose and measure the bundle; add true geography and regional filtering only where supported by data.
DashboardClient.tsx · ReleaseImpactMap.tsxv1 and v2 are not symmetrical; a persistent outbox and signed delivery headers already exist.
The worker still depends on application invocation. Actual headers use the PolicyWatcher-* prefix.
webhookDelivery.ts · webhookDeliveryData.tsactiveTab enables local selection/page analysis and up to three evidence summaries.
The companion does not display KPI values or a policy score.
browser-extension/popup.jsThe Agent uses HMAC, timestamp and nonce; the Renderer uses Bearer auth with two-secret rotation.
Keep release and readiness evidence bounded and observable across both services.
api/admin/vps-services · vps-agent/agent.mjsJSON and PDF exports include SHA-256 integrity material.
Packets lack a digital signature, complete diff and archive timestamp.
evidencePacket.tsUser templates are English-only; newsroom RSS and JSON Feed already exist.
Unsubscribe is client-confirmed rather than one-click, and bounce suppression is not implemented.
press-kit/feed.xml/route.ts · email templatesThis ordered pipeline is the committed prioritization lens. The feature radar remains a separate, unprioritized candidate backlog.
Scraping, webhooks and email run as persistent jobs with retry, backoff, idempotency and a dead-letter queue.
Completion and retry metrics are visible; recovery is tested.
Chunking and source-anchored citations cover every KPI; scoring is deterministic only when presented as such, otherwise explicitly AI-generated.
Golden-set quality and claim-to-evidence traceability pass review.
OIDC, MFA, session revocation and per-user audit records replace role-shared attribution.
No admin action is attributable only to a shared role.
DashboardClient is decomposed, secondary surfaces are lazy-loaded and bundle changes are measured; geography follows actual data coverage.
A bundle budget and responsive tests pass before release.
DNS pinning and rebinding protection align webhook SSRF policy with acquisition; scheduling no longer depends on app cron.
Redirect/DNS tests and an independent scheduler healthcheck pass.
Provider events drive bounce/complaint suppression and true RFC 8058 one-click unsubscribe while preserving granular preferences.
Provider events and the suppression list are auditable.
Persistence moves only when deployment is genuinely multi-instance, with an attachment strategy and tested backup/restore.
The operational requirement and a restore drill are documented first.
Packets include complete diff and archive timestamp; PDF signing and multiple renderers follow stable queue and storage foundations.
Signature verification and reproducible rendering pass.
PolicyWatcher retains a guided start for first-time visitors. The selected purpose and evidence depth compose a preview from registered dashboard modules; the choice stays reversible and Source QA remains pinned in every generated stack.
For audit or publication. The UI exposes retrieval path, hashes, timestamps, source drift, and known limitations.
A low-noise reading mode focused on policy changes, plain-language summaries, affected rights, and what should be verified at the source.
The voted outcomes are now shipped alongside the active Confidence work, with acceptance criteria and publication boundaries kept visible.
Align visible homepage content, canonical social metadata, structured identity and crawler access around the public evidence boundary.
Turn eligible public policy changes into a bounded association pilot watchlist with theme triage, local review states, a Markdown digest and Evidence Collection handoff.
Upload a bounded Renderer package from the protected Admin Center, verify it across the browser, Hostinger and VPS Agent, then follow asynchronous install, smoke and rollback state.
Keep complete checksum-listed editorial packages in the public repository while serving download links from GitHub and excluding nested package archives from Hostinger deployments.
Group the full public resource directory by intent and make shared acquisitions explicit through safe fingerprints, cache modes and renderer/browser coherence.
Centralize same-origin provenance, route-specific declared-body limits, JSON enforcement, bounded rate state and safe response metadata for unsafe administrative API methods.
Turn candidate interest or a new proposal into a browser-local Need, Evidence, Limits and Review dossier before an explicit GitHub handoff.
Connect returned-window priority, safe filtering, bounded issue evidence, responsive layouts and the Detect to Close sequence in one protected workbench.
Require explicit target-domain egress, HTTPS, bounded output and total runtime while separating public liveness from authenticated Chromium readiness and supporting a bounded two-secret rotation overlap.
Classify an explicitly selected Word clause locally against a fixed taxonomy, display the derived topics and search related public evidence only after a separate acknowledgement.
Validate a Microsoft 365 Copilot declarative agent, Vertex AI Agent Builder tool or Amazon Quick OpenAPI connector against the same public evidence contract.
Retrieve deterministic capabilities, public change briefs and curated Observatory briefs through one flattened OpenAPI 3.0 contract.
Inspect the bounded public change-event window, save or import a strict local checkpoint and explicitly resume forward polling from its opaque cursor.
Select up to 12 exact public change records, keep a bounded title and review state in localStorage, and share a canonical URL containing public change IDs only.
Selected exact-change Evidence Packets are composed into one deterministic collection with per-record identity, source state, screening trace, packet digest and review questions.
One read-only endpoint returns deterministic JSON, Markdown or formula-safe CSV for 1–12 canonical public change IDs.
Public evidence files show publication state, sanitized retrieval status, last-check time and versioned public snapshot fingerprints for one change.
Assessed KPI evidence is mapped to review questions for the EU AI Act, ISO/IEC 42001, NIST AI RMF and OECD AI Principles.
Stored score reasons can show an exact source passage, snapshot side and related KPI only when the passage matches the recorded snapshot.
Each publishable change can produce a two-page PDF and JSON packet with identity, evidence fingerprints, score trace, advisory mappings, review questions and digest.
Copy view writes the public dashboard filters to a versioned canonical URL, while committed filter changes participate in browser history and stale values fail closed.
Heatmap selection commits region and audience together, while radar KPI selection opens original and normalized values with explicit missing and tie outcomes.
The notification workflow now moves from paste to a local company/policy summary and one verification action, while optional corrections and explainability stay progressively disclosed.
A minimum-permission Chrome, Edge and Safari companion reads an opened notice only after an explicit gesture, extracts non-personal clues locally, and connects the confirmed signal to PolicyWatcher’s published portfolio evidence.
First-time visitors choose an objective and evidence depth, preview the evidence stack, and enter a workspace whose toolbar exposes only the most relevant actions while retaining every command in More.
A citizen can paste a plain-text terms/privacy notice, confirm the locally extracted organization and starting policy clues, receive portfolio-wide public evidence, or create a zero-content human-review inquiry that feeds controlled company discovery.
On a first visit, a guided start asks for the user objective and evidence depth, previews a typed stack of real dashboard evidence modules, and saves the selected workspace.
Operators can import company and policy candidates, review official-source fit, establish a first private baseline, run the QA gate, and record an explicit publication decision.
Save preferred detail level, visible panels, comparison lenses, and export defaults locally so repeated work feels intentional instead of crowded.
Dataset QA, source suspension, review log, access log, renderer/VPS monitoring, public evidence gate, and quality badges.
First-use objective composer built from registered evidence modules, plus durable five-stage bulk source onboarding with private baselines, QA review, and explicit publication decisions.
Persistent discovery jobs, atomic run claims, safe request parsing, audited candidate reopening, synchronized QA rollback, sensor-free mobile context, and UTC countdown correctness.
Centralized onboarding batch invariants, held-workflow defense in depth, deferred orientation evaluation with cleanup, root mobile overflow containment, and single-source release metadata.
Bilingual notification-to-evidence inquiry with browser-local clue extraction, one-request company discovery, in-context baselines, evidence-provenance KPI QA, audited human handoff, and self-checking Hostinger startup.
Plain-text-first notification intake, explicit clue confirmation, organization/domain conflict handling, portfolio-wide policy verification, and actionable database-unavailable states without transmitting raw message content.
Progressive first-use onboarding, objective-aware quick actions, direct changelog identity, icon-only What Changed entry, focused mobile navigation, and browser-local personalization.
Production Chrome/Edge Manifest V3 extension and Safari-compatible source with temporary tab access, local clue extraction, structured confirmation and portfolio-wide public evidence results.
One-action mobile notification intake, company extraction, persistence-specific receipts, visible admin queue count and privacy-minimized operator alerts.
Human-approved AI model registry, privacy-safe telemetry, validated release ledger and bilingual Evidence Pulse with explicit residual boundaries.
Self-service webhook lifecycle, endpoint proof and secret rotation, persistent alert watchlists, multi-version diff and production integration hardening after the configured pilot.
Community benchmark pack, cross-version evidence lineage, external methodology review and production database hardening.
Select any route to inspect its benefit, evidence basis and named residual risk. Categorical KPI and KRI labels describe release outcomes, not measured performance.
The matrix contains 76 visible work items across 9 domains. Releases run from 3.7.0 through the current 4.0.0 Beta 3 and two future horizons.
Swipe or scroll horizontally to follow the release route. Work-item labels remain fixed.
Candidate review records the workflow, expected evidence, acceptable limits and the current implementation gap. No popularity or endorsement count is inferred.
Delivered in 3.9.0 Beta 11: a versioned manifest and localized Observatory registry make the public integration surface inspectable, rate-limited and source-bound.
Pilot ready: API v2 validates tenant-bound Entra tokens at the origin, publishes an OpenAPI contract, includes an APIM policy and provides a source-controlled custom connector package.
Delivered in Beta 28-29: one deterministic Agent Evidence Gateway plus source packages for Microsoft 365 Copilot, Vertex AI Agent Builder and Amazon Quick.
Delivered in Beta 30: locally classify selected clause text and send only displayed controlled topic labels to the public evidence gateway after explicit acknowledgement.
Delivered in 3.9.0 Beta 17: select up to 12 public change IDs, retain title and review states locally, and share an ID-only canonical URL.
Delivered in 3.9.0 Beta 23: deployment-configured HTTPS destinations receive eligible public change events through HMAC-SHA256 signatures, a persistent outbox, per-attempt evidence and bounded retries.
Add versioned reviewer commentary, change history and additional framework topics to the delivered advisory map.
Publish bounded portfolio-level continuity trends across time without exposing raw failures, admin decisions or private remediation details.
A visual atlas of policy movement by sector, jurisdiction, source status, and time period, designed for researchers and journalists.
Delivered in 3.9.0 Beta 17: compose selected exact-change evidence packets into a dated bundle with selection scope and per-record digests.
Let authenticated users subscribe to future changes for selected companies, policies, jurisdictions, or governance topics and receive focused updates.
Compare source-anchored screening reasons across multiple public changes while retaining the original snapshot side and KPI linkage.
Delivered in 3.9.0 Beta 17: deterministic JSON, Markdown and formula-safe CSV exports for 1–12 canonical public change IDs.
Available in the current build as a vendor-neutral handoff manifest with deterministic work-item IDs, evidence links, digests, review questions and acceptance criteria.
Copilot public-evidence agent source is delivered. Continue with an authenticated Teams route, a federated MCP server and optional Graph indexing over tenant-bound controls.
Start with a discovery listing, then evaluate a transactable SaaS offer after tenant provisioning, entitlements, billing events, consent revocation and support operations exist.
Move from crowded navigation to a command-driven, panel-based inspection surface with graph, table, timeline, and evidence modes.
A public set of known policy-source cases used to test retrieval, source-fit checks, source suspension, and dashboard behavior.
Each request is reviewed for feasibility, source quality, security and claim scope. The ranking informs product prioritization.
Identify the user, decision and question.
Specify the required source, check log, snapshot, region, KPI or export.
Document the implementation path, data requirements and automation limits.
Classify the item as a feature release, evidence-method release or research candidate.
The most useful feedback is specific: the role you have, the decision you need to make, the evidence you trust, and the level of detail you expect.