Use case
Review the governed record, not a generic AI label
Owner, purpose, decision criticality, usage, assets, data, models, and tools establish the context before a decision is reviewed.
Capability
Keep dated AI inventory, authorization, and evidence attached to every review. Route supported material changes and incident cases back to human review, preview and stage policy changes with explicit approval, and map declared versus observed reach across identities, agents, tools, data, and environments. Supported response options, partial outcomes, recovery, same-probe replay, recurrence checks, source health, and uncertainty stay visible.
Governed AI use cases, effective-dated change records, AI-BOM, AI red-teaming and LLM security testing, MCP/tool governance, human authorization review, privacy-minimized runtime telemetry, policy preview and staged rollout, declared-versus-observed access paths, bounded incident-response review. Valty keeps source, freshness, uncertainty, and the human reviewer visible on the decision record.
Design-partner workflow. Source, change-type, telemetry, reachability, and incident-case coverage remain visible; missing or untrusted signals are not proof that no AI exists, no material change occurred, an incident is closed, or an environment is safe. Routine drafting, retrieval, extraction, questionnaire assistance, scheduling, memory use, and successful workflow execution remain governed AI activity, not an incident or response. Supported policies, access paths, and response options can be previewed and reviewed, but complete live enforcement, authoritative IAM/MCP/RAG/data or provider response changes, durable production case composition, production signing and trust-root custody, long-running recurrence monitoring, outage recovery, and release-specific rollback, path-reduction, or incident-closure proof are still under validation. Partial, degraded, unsigned, unreconciled, unreplayed, or recurrent response is not success or closure. Current public scope does not claim AI-risk pricing, autonomous production response, incident resolution, or safe AI. Regulated AI decisions require human review.
Best next step for CISO, AI governance lead: choose “Agent authorization design partner” to review the workflow, evidence boundary, and fit for your environment.
Developers can start free at the source with OLYDI ↗, the open engine that finds and fixes unsafe AI agent behavior in code, then feeds verified evidence up into Valty.

Governed AI decisions
Valty’s design-partner workflow links AI use cases, data sensitivity, classification drift, control evidence, and response events to a reviewable governance record. Stale or unsupported inputs remain degraded instead of becoming a confident answer.
Use case
Owner, purpose, decision criticality, usage, assets, data, models, and tools establish the context before a decision is reviewed.
Evidence
Source, freshness, and missing context remain on the record so a reviewer can distinguish supported evidence from an open assumption.
Drift
Classification drift retains source confidence, affected controls, the reviewer, and the decision made without silently rewriting history.
Response
A designated reviewer retains approval, reversal stays possible, and automated containment is not presented as a public general-availability capability.
Assumption range
Design-partner workflow, not a general-availability claim. We do not claim independently verified response outcomes, AI-risk pricing, or autonomous remediation.
Proof matrix
Every claim shows its source, confidence, and limits, so you can trust the number before you act on it.