GATE Control Catalog
Browse controls by boundary and minimum autonomy tier requirements. Each row links to a dedicated page with the full Why / What / How / Evidence / Failure modes content plus NIST AI RMF and ISO/IEC 42001 mappings.
Legend:
✅ Required
◯ Not required
◐ Conditional
Tip: “Conditional” means required when the capability is in use (e.g., multi-agent, confidential
execution), or when impact warrants.
Controls at a glance
| ID | Control | Layer | Primary boundary | Minimum by tier | Mappings |
|---|
Standard mappings
Every control carries an informative mapping to NIST AI RMF and ISO/IEC 42001 in the framework paper. v1.4 adds machine-readable mappings to three further standards, maintained as YAML in the gate-conformance repository:
- OWASP AISVS - per-requirement coverage against AISVS v1.0 (owasp-aisvs.yaml)
- MITRE ATLAS - per-technique coverage against ATLAS content 2026.05 (mitre-atlas.yaml)
- NIST SSDF - intersection scope against SP 800-218 v1.1 (nist-ssdf.yaml)
Mappings are informative alignment guides, not certifications.