# Company AI context readiness checklist

Use this record before expanding a shared knowledge base across people and AI
agents. Do not include credentials, tokens, secrets, or personal data that
belongs in a protected system.

## Readiness checklist

- [ ] Approved sources and their canonical owners are inventoried.
- [ ] Source knowledge is separate from changing continuation records.
- [ ] Every person and unattended agent has a distinct identity.
- [ ] Company, workspace, and record-level access rules are explicit.
- [ ] Every material write creates attributable, revisioned evidence.
- [ ] Search and direct reads enforce the same authorization checks.
- [ ] Review, revocation, retention, and recovery have been tested.
- [ ] A two-person, two-agent pilot passed the continuation test.

## Approved sources

| Source | Canonical owner | Classification | Allowed workspaces | Refresh method |
| --- | --- | --- | --- | --- |
|  |  |  |  |  |

## Context layers

### Source knowledge
<!-- List stable policies, specifications, datasets, and reference material. -->

### Continuation records
<!-- List changing objectives, decisions, evidence, review, and next actions. -->

### Derived indexes
<!-- State how search points back to canonical, permitted records. -->

### Private session memory
<!-- State what must never be treated as company evidence automatically. -->

## Identity inventory

| Principal | Type | Human owner | Purpose | Workspaces | Allowed actions |
| --- | --- | --- | --- | --- | --- |
|  | Person / service agent |  |  |  |  |

## Boundary map

- Company:
- Workspaces:
- Folder purpose:
- Record visibility options:
- Public-sharing owner:
- Explicitly denied paths:

## Write and review model

- Canonical record:
- Revision rule:
- Artifact integrity rule:
- Annotation and assignment rule:
- Resolution evidence:
- Conflict handling:

## Search and retrieval policy

- Indexed fields:
- Authorization filter:
- Direct-read parity check:
- Metadata leakage test:
- Canonical result link:

## Lifecycle and recovery

- Access review cadence:
- Disable and revocation procedure:
- Retention policy:
- Export or backup procedure:
- Recovery test:
- Offboarding owner:

## Pilot verification

- [ ] Two separately authenticated people participated.
- [ ] Two separately authenticated agents participated.
- [ ] Each actor saw only permitted sources and records.
- [ ] Every revision showed the authenticated author.
- [ ] A human finding linked to a correcting revision.
- [ ] A denied company or workspace search returned no metadata.
- [ ] A disabled agent immediately lost read and write access.
- [ ] A fresh actor completed one bounded next action without the original chat.

## Pilot result

**Status:** Pass / Blocked

**Pilot owner:**

**Evidence links:**

**Blockers:**

**Next review date:**
