The Commonplace
Home Three-study pilot Papers Evidence Explore Trends Syntheses Digests References Docs 🎲 Workforce Futures
← Papers
Direction, evidence grade, and study type are AI-generated labels (gpt-5-mini), not human-verified. Syntheses are LLM-written. "Tensions" are machine-detected candidates, not confirmed contradictions. A research-acceleration tool, not peer review. How this is built →

A single policy kernel to govern enterprise AI: the authors propose UPA, a declarative policy-centric architecture and language that externalizes authorization, compliance, runtime obligations and audit for autonomous agents across enterprise systems; the design is coherent and extensible but remains unvalidated in production, with key questions about performance, interoperability and deployment left open.

A Unified Policy Architecture (UPA): The Governance Kernel for Enterprise AI Operating Systems
Prabhu Raghav, Balamurugan Pandi, Arul Vivek, Shek Mohammed, Sridhar S · September 06, 2026
arxiv theoretical n/a evidence 7/10 relevance Full text usable extracted full text Source PDF

Structured author observations

Linked only from stored provider relations; the raw author line above is never matched by name.

Arxiv

Latest observation:

  1. Prabhu Raghav unresolved corpus identity
  2. Balamurugan Pandi unresolved corpus identity
  3. Arul Vivek unresolved corpus identity
  4. Shek Mohammed unresolved corpus identity
  5. Sridhar S unresolved corpus identity
The paper proposes a Unified Policy Architecture (UPA) and Declarative Governance Policy Language (DGPL) that externalize and unify authorization, runtime governance, compliance, audit, and approval workflows for enterprise autonomous AI agents via a Policy Kernel and PARC request model.

Citation observations

Cumulative provider counts captured on specific dates; providers are never combined.

No provider observation is available for this paper.

Missing data, not a zero citation count.

Enterprise AI is evolving into an Enterprise Operating System where autonomous AI agents can plan, reason, use memory, invoke tools, execute workflows, and collaborate with other agents. This shift creates a new governance challenge: existing authorization, security, guardrails, and compliance mechanisms are fragmented and are not designed to govern autonomous AI as a unified system. This paper introduces the Unified Policy Architecture (UPA), a governance architecture for Enterprise AI Operating Systems. UPA provides a unified policy model for governing AI and agents, tools, workflows, memory, enterprise resources, and agent-to-agent interactions and enterprise business rules. It extends policy control beyond authorisation to include runtime obligations, human approvals, compliance, audit evidence, and governance evaluation. We present UPA's governance model, declarative policy language foundations, policy evaluation semantics, extensible plugins, industry policy packs, and an evaluation framework for enterprise governance. We also identify extensions for multi-agent coordination, provenance-aware policies, and stateful runtime governance. UPA provides a foundation for building secure, accountable, and governable Enterprise Operating Systems for autonomous AI.

Summary

Main Finding

The paper proposes the Unified Policy Architecture (UPA): a policy-centric governance layer for Enterprise AI Operating Systems that externalizes and standardizes governance (authorization, safety, compliance, auditability, runtime control, approvals, and multi-agent coordination). UPA centers a deterministic Policy Kernel and a Declarative Governance Policy Language (DGPL) that take PARC (Principal–Action–Resource–Context) requests, produce both governance decisions and executable obligations (Eval(q, Π) = (d, Γ)), and use plugin-based Evaluation and Obligation Providers to enable extensible, interoperable governance across heterogeneous agent runtimes and enterprise environments.

Key Points

  • Governance as architecture: Argues enterprise AI governance is a systems-architecture problem (not just model safety) because autonomous agents dynamically plan, invoke tools, access memory, and coordinate across agents/humans.
  • Policy Kernel: A deterministic, centralized evaluation layer that separates policy specification, policy matching, decision semantics, and runtime enforcement from agent reasoning and application logic.
  • PARC request model: Canonical request representation (Principal–Action–Resource–Context) for consistent policy matching across diverse runtimes.
  • DGPL (Declarative Governance Policy Language): A declarative policy model supporting authorization, AI-safety rules, obligations (e.g., human approvals, audit actions, plugin invocations), policy composition, namespaces, and industry policy packs.
  • Semantic normalization: Framework-independent transformation that maps heterogeneous runtime events (LLMs, tools, workflows) into canonical policy inputs so policies can be applied consistently.
  • Governance Provider Framework: Two plugin classes — Evaluation Providers (threat detection, risk scoring, contextual enrichment) and Obligation Providers (privacy transformations, compliance checks, audit logging) — so enforcement logic is extensible without changing the core kernel.
  • Lifecycle coverage: UPA governs the entire autonomous-execution lifecycle (authentication, planning, memory access, tool invocation, inter-agent collaboration, workflow execution, human approvals, compliance validation, audit generation, runtime controls).
  • Complementary to existing tech: Positions UPA as complementary to Zero Trust, Cedar, OPA/XACML, AI guardrails, and agent frameworks — not replacing them but providing a unified control plane.
  • Obligations-as-first-class: Policies can return obligations (Γ) that trigger runtime enforcement actions or plugins, not only binary allow/deny decisions.
  • Engineering and ecosystem features: Declarative policy composition, standardized namespaces, industry policy packs, and benchmark-oriented evaluation methodology are proposed to support enterprise adoption.
  • Research/implementation gap: Paper is an architectural specification and reference model; concrete implementations, performance evaluations, and empirical benchmarks are proposed but not presented.

Data & Methods

  • Nature of the contribution: Conceptual/architectural design and specification; no empirical datasets or production implementation results are reported.
  • Methods used:
    • Literature synthesis and gap analysis across policy-based access control (RBAC/ABAC/ReBAC/XACML/Cedar), policy-as-code (OPA/Rego), AI safety/guardrails, Zero Trust, multi-agent systems, and governance-first execution architectures (e.g., Arbiter-K).
    • Design of abstractions: Policy Kernel, PARC request model, DGPL constructs, Semantic Normalization model, and Governance Provider Framework.
    • Formal/operational notation: Uses a concise evaluation model Eval(q, Π) = (d, Γ) to capture decision + obligations semantics.
    • Proposed evaluation approach: A benchmark-oriented methodology for enterprise AI governance scenarios (suggested metrics and scenarios for measuring policy coverage, enforcement fidelity, latency, plugin correctness, audit completeness, and cross-framework interoperability).
  • Limitations of methods:
    • No empirical experiments, deployments, or quantitative results in the paper.
    • Performance, scalability, integration costs, and human-in-the-loop dynamics are not validated empirically.
    • Security and trust assumptions (e.g., centralization of the Policy Kernel, plugin trust boundaries) are discussed conceptually but not stress-tested.

Implications for AI Economics

  • Reduced duplicated governance costs: Standardizing governance into a shared Policy Kernel and declarative policies can lower organizational transaction costs by eliminating duplicated policy logic across agent frameworks and applications.
  • Economies of scale and fixed costs: Building a UPA-compliant governance platform entails fixed development and integration costs (Policy Kernel, DGPL, semantic normalization, plugins). Large enterprises or platform providers may benefit from scale; smaller firms may face adoption barriers unless governance becomes commoditized.
  • New markets and modular specialization: UPA’s Governance Provider Framework enables modular markets for Evaluation Providers (risk scoring, threat detection) and Obligation Providers (privacy transforms, compliance checks, auditors). This supports specialization and potential competitive markets for governance services and industry policy packs.
  • Platformization and network effects: Standardized policy namespaces and DGPL could create platform effects — policy packs, certified plugins, and audit evidence may become valuable complements, increasing vendor lock-in risk for early dominant providers but also lowering switching costs if standards are widely adopted.
  • Risk pricing and insurance: Improved auditability, evidence generation, and runtime controls can reduce information asymmetries and moral hazard, potentially lowering insurer premiums and the cost of capital for AI-driven processes by making risk exposure more measurable and auditable.
  • Regulatory compliance costs and regulatory arbitrage: UPA can reduce per-transaction compliance costs by automating obligations and verifiable audits, but initial implementation may increase compliance-related fixed costs. Standardized governance may limit regulatory arbitrage by making compliance enforcement auditable across jurisdictions.
  • Labor and organizational effects: Automating governance checkpoints (authorization, approvals, compliance checks) may substitute for some supervisory and compliance operational roles, shifting labor toward higher-skill governance engineering and oversight; human-in-the-loop design and approval workflows still create demand for oversight personnel.
  • Productivity and value capture: Safer, auditable, and interoperable autonomous agents can unlock greater productivity gains from AI by allowing higher degrees of delegated autonomy in enterprise workflows. The gains will accrue to firms that effectively integrate governance with operational processes.
  • Externalities and social welfare: Standardized governance reduces negative externalities from unsafe or non-compliant agent behavior (data breaches, regulatory fines, market disruptions). Conversely, centralization of governance primitives could concentrate power (policy authorship, audit control), raising competition and governance-of-governance concerns.
  • Measurement and empirical research opportunities: The paper’s proposed benchmarks create a research agenda to quantify governance-related frictions (latency, enforcement errors, false positives/negatives in safety checks) and economic trade-offs (cost of governance vs. incident reduction), which are crucial for cost-benefit analyses of enterprise AI adoption.

Potential follow-ups for economic analysis: - Estimating fixed vs. variable costs of adopting UPA at different firm sizes and industry sectors. - Modeling market structure effects of standardized DGPL and policy packs (market concentration, two-sided markets). - Empirical evaluation of how auditability and governance tooling affect insurance pricing and investment in AI projects.

Assessment

Paper Typetheoretical Evidence Strengthn/a — The paper is an architectural/theoretical proposal without empirical causal identification or quantitative evaluation; it does not produce causal estimates or experimental evidence. Methods Rigormedium — The authors provide a structured, well-situated architectural design that builds on prior policy and governance work (e.g., XACML, OPA, Cedar) and introduces formal concepts (PARC, Policy Kernel, DGPL, provider/plugin separation). However, the paper lacks formal proofs, formalized semantics for all components, implementation details, performance evaluation, security analysis, and empirical validation—limiting rigor to conceptual and design-level arguments. SampleNot applicable — no empirical sample. The paper is a conceptual/architectural design proposing the Unified Policy Architecture (UPA) and Declarative Governance Policy Language (DGPL), and it sketches a benchmark-oriented evaluation methodology without presenting implemented experiments or datasets. Themesgovernance org_design GeneralizabilityNo empirical validation or deployed case studies to demonstrate applicability across real enterprises, Enterprise heterogeneity (different cloud providers, agent frameworks, legacy systems) may limit straightforward adoption, Performance, latency, and scalability implications of an external Policy Kernel are untested, Interoperability with diverse model providers, third-party plugins, and proprietary tooling is described at a high level but not demonstrated, Human-in-the-loop and organizational adoption friction (operational processes, approvals) not empirically studied, Legal and regulatory variance across jurisdictions may require localized policy adaptations not covered by the proposal

Claims (10)

ClaimDirectionOutcomeConfidence & EvidenceDetails
Enterprise AI governance requirements extend beyond model safety and content moderation to include authorization, compliance, human oversight, data protection, auditability, and runtime control of agent actions. Governance And Regulation positive Scope and comprehensiveness of enterprise AI governance
Reading fidelity high
Study strength low
not reported
0.06
Existing enterprise AI governance mechanisms are fragmented across identity and access management, AI guardrails, workflow orchestration, compliance, security, auditing, and business authorization, which can lead to duplicated logic, inconsistent enforcement, limited interoperability, and increased operational complexity. Organizational Efficiency negative Governance consistency, interoperability, and operational complexity
Reading fidelity high
Study strength low
not reported
0.06
The proposed Unified Policy Architecture introduces a deterministic Policy Kernel that separates policy specification, matching, evaluation, and runtime enforcement from autonomous agent reasoning and application logic. Governance And Regulation positive Separation and centralization of enterprise AI governance logic
Reading fidelity high
Study strength speculative
not reported
0.02
UPA uses a standardized Principal–Action–Resource–Context request model and allows policies to generate both governance decisions and executable governance obligations. Governance And Regulation positive Policy interoperability and runtime governance action generation
Reading fidelity high
Study strength speculative
not reported
0.02
Unlike conventional AI guardrails that primarily validate model inputs and outputs, UPA is designed to govern the full lifecycle of autonomous execution, including authentication, authorization, planning, memory access, tool invocation, inter-agent collaboration, workflow execution, human approval, compliance validation, auditing, and runtime governance. Governance And Regulation positive Lifecycle coverage of AI governance controls
Reading fidelity high
Study strength low
not reported
0.06
The paper argues that enterprise AI governance should be treated as a systems architecture problem rather than only as a model-safety problem. Governance And Regulation positive Architectural framing of enterprise AI governance
Reading fidelity high
Study strength low
not reported
0.06
The paper claims that traditional authorization frameworks effectively govern identities, resources, and permissions but were not designed to govern autonomous agents' dynamic planning, reasoning, memory access, tool selection, and inter-agent collaboration. Governance And Regulation mixed Fitness of conventional authorization mechanisms for autonomous AI governance
Reading fidelity high
Study strength medium
not reported
0.12
UPA is intended to extend identity-centric Zero Trust security into policy-centric runtime governance for autonomous AI systems. Governance And Regulation positive Runtime governance coverage beyond identity and access control
Reading fidelity high
Study strength speculative
not reported
0.02
The paper claims that multi-agent frameworks generally focus on agent capabilities and orchestration, while governance policies are often embedded in application code or tightly coupled to execution frameworks, making enforcement difficult to standardize across heterogeneous runtimes and domains. Governance And Regulation negative Standardization and portability of governance policy enforcement
Reading fidelity high
Study strength medium
not reported
0.12
UPA is presented as a framework- and model-provider-independent declarative policy layer intended to consistently regulate authorization, tool usage, memory access, workflow execution, compliance obligations, approvals, auditing, and inter-agent interactions. Governance And Regulation positive Cross-framework consistency and breadth of enterprise AI governance
Reading fidelity high
Study strength speculative
not reported
0.02

Notes