Causance

The operating system for trustworthy software change.

Causance sits above repositories, agents, models, CI/CD, providers, and downstream products to govern how consequential software change moves from authority to accepted outcome.

The technical leap

Autonomy gets faster. Authority cannot become implicit.

Modern software systems can plan, generate, test, deploy, and recover across multiple providers. The hard problem is keeping those actions bounded by explicit authority, current evidence, independent review, and recoverable state.

Causance provides that control layer without requiring the lifecycle core to own credentials, discover its own authority, approve its own work, or silently absorb downstream product policy.

Private development platform

One control plane. Explicit separation of power.

The public architecture shows responsibilities and boundaries. The control logic, schemas, evaluators, and implementation mechanics remain private.

Authority planeGoverned intentScope · actors · limits · evidence expectations · recovery conditions
CausanceLifecycle controlAuthority · orchestration · evidence · review · recovery · adoption
Evidence planeAttributable stateTransformation · verification · provenance · unresolved effects
Independent boundaryProtected review
Continuity boundaryRecovery and adoption
Authorize · Execute · Observe · Verify · Review · Release · Recover · Adopt · Repeat
Public capability map

Enough architecture to understand the system. Not enough to reproduce it.

AuthorityAuthority control

Consequential actions begin from bounded external authority rather than credentials, role assumptions, or ambient access.

LifecycleLifecycle orchestration

Software change moves through explicit states and gates instead of becoming a chain of loosely related provider events.

AIAgent and model governance

Agents, models, tools, and providers operate through declared capabilities and bounded roles rather than becoming hidden sources of authority.

EvidenceEvidence and verification

Verification and evidence remain attached to the state they actually describe so stale facts cannot silently support a newer decision.

ReviewProtected review

Implementation and approval remain distinct. Producing a change never becomes permission to approve the change.

ContinuityRecovery and adoption

Replay, rollback, recovery, compatibility, and downstream acceptance remain explicit parts of the lifecycle rather than afterthoughts.

The trust boundary

What Causance deliberately refuses to become.

A system that discovers its own authority

Permission must remain externally attributable. Access and capability do not create legitimate authority.

A system that approves its own work

Review, acceptance, merge, release, and recovery decisions remain separately governed.

A provider-specific control layer

Providers are isolated behind bounded interfaces so no single repository host, model vendor, cloud, or operating environment becomes the architecture.

A silent upgrade mechanism

Downstream products receive explicit versions through compatibility, rollback, evidence, and acceptance boundaries.

Operating hierarchy

Power belongs where responsibility can be proven.

Core

Causance control plane

Owns reusable lifecycle semantics and deterministic decisions without owning ambient operational power.

Host

Operational boundary

Owns credentials, provider access, persistence, execution, evidence custody, and authorized mutations.

Product

Downstream system

Owns business logic, product policy, repository identity, user experience, and product-specific evidence.

Gate

Adoption boundary

Controls movement between platform and product through explicit compatibility, rollback, evidence, and acceptance.

First downstream product

Technology Control Room adopts Causance. It does not become Causance.

The relationship demonstrates how a product can receive governed lifecycle control while retaining its own policy, evidence, user experience, and business meaning.

Causance releaseExact platform version
CompatibilityContracts, parity, and policy
Rollback readinessReversible adoption state
TCR acceptanceProduct-owned decision