GATE Control Catalog

Browse controls by boundary and minimum autonomy tier requirements. Each row links to a dedicated page with the full Why / What / How / Evidence / Failure modes content plus NIST AI RMF and ISO/IEC 42001 mappings.

Legend: ✅ Required ◯ Not required ◐ Conditional Tip: “Conditional” means required when the capability is in use (e.g., multi-agent, confidential execution), or when impact warrants.

Controls at a glance
ID Control Layer Primary boundary Minimum by tier Mappings
Standard mappings

Every control carries an informative mapping to NIST AI RMF and ISO/IEC 42001 in the framework paper. v1.4 adds machine-readable mappings to three further standards, maintained as YAML in the gate-conformance repository:

  • OWASP AISVS - per-requirement coverage against AISVS v1.0 (owasp-aisvs.yaml)
  • MITRE ATLAS - per-technique coverage against ATLAS content 2026.05 (mitre-atlas.yaml)
  • NIST SSDF - intersection scope against SP 800-218 v1.1 (nist-ssdf.yaml)

Mappings are informative alignment guides, not certifications.