graph TB subgraph "Agent Runtime Layer (Any LLM Agent System)" AGENT["Agentic AI Runtime
LangChain • AutoGPT • CrewAI
Claude Code • Custom Agents
Multi-Agent Systems
Tool Use • Planning • Execution"] end subgraph "Tractatus Governance Layer (External Enforcement)" BE["BoundaryEnforcer
Blocks values decisions
• Privacy policies
• Ethical trade-offs
• Strategic direction
• User agency violations
⚠ Cannot be bypassed by prompting"] IPC["InstructionPersistenceClassifier
Classifies & stores instructions
• Quadrant (STR/OPS/TAC/SYS)
• Persistence (HIGH/MED/LOW)
• Temporal scope
⚠ External to AI memory"] CRV["CrossReferenceValidator
Prevents pattern bias override
• Checks instruction history
• Detects conflicts (27027)
• Blocks contradictions
⚠ Independent verification"] CPM["ContextPressureMonitor
Detects degraded conditions
• Token budget tracking
• Error accumulation
• Checkpoint reporting
⚠ Objective metrics, not self-reported"] MV["MetacognitiveVerifier
Validates complex operations
• >3 files or >5 steps
• Architecture changes
• Confidence scoring
⚠ Structural pause-and-verify"] PDO["PluralisticDeliberationOrchestrator
Facilitates values deliberation
• Multi-stakeholder engagement
• Moral framework mapping
• Precedent documentation
⚠ Human judgment required"] end subgraph "Persistent Storage Layer (Immutable Audit Trail)" GR["governance_rules
• rule_id (STR-001...)
• quadrant
• persistence level
• enforced_by
• violation_action
• active status"] AL["audit_logs
• timestamp
• service (which enforcer)
• action (BLOCK/WARN)
• instruction
• rule_violated
• session_id"] SS["session_state
• session_id
• token_count
• message_count
• pressure_level
• last_checkpoint
• framework_active"] IH["instruction_history
• instruction_id
• content
• classification
• persistence
• created_at
• active status"] end subgraph "Human Approval Workflows" HA["Human Oversight
Values Decisions
Strategic Changes
Boundary Violations
Final authority on incommensurable values"] end %% Data Flow - Agent to Governance AGENT -->|"All actions pass through governance checks"| BE AGENT --> IPC AGENT --> CRV AGENT --> CPM AGENT --> MV AGENT --> PDO %% Governance to Storage BE --> GR BE --> AL IPC --> GR IPC --> IH CRV --> IH CRV --> AL CPM --> SS CPM --> AL MV --> AL PDO --> AL %% Human Approval Flow BE -->|"Boundary violation"| HA PDO -->|"Values conflict"| HA HA -->|"Approval/Rejection"| BE %% Styling classDef agent fill:#dbeafe,stroke:#3b82f6,stroke-width:3px classDef governance fill:#f0fdf4,stroke:#10b981,stroke-width:3px classDef persistence fill:#fef9c3,stroke:#eab308,stroke-width:2px classDef human fill:#fce7f3,stroke:#ec4899,stroke-width:3px class AGENT agent class BE,IPC,CRV,CPM,MV,PDO governance class GR,AL,SS,IH persistence class HA human %% Key Insight Box NOTE["🔒 KEY JAILBREAK DEFENSE
Governance layer operates OUTSIDE agent runtime
Cannot be overridden by adversarial prompts
Structural boundaries, not behavioral training
Immutable audit trail independent of AI
"] class NOTE governance