What this is.
Position in the architecture · Strategic Compass
Specification · No standalone specification is deposited for this framework. Its authoritative treatment is Chapters 10 and 11 of the Enterprise Playbook, ISBN 978-1-0678960-1-0, read together with the consolidation notice at section 6.2. This page and registry entry REG-07 are the most complete normative statement available in citable form.
Renamed. Three frameworks formerly asserted separately, the Governance Office Blueprint, the RACI-AI Matrix and the Governance Cadence Framework, are now the Structure, Decision rights and Cadence sections of this one. A decision-rights matrix has no operational meaning without a structure to assign the rights within, and a cadence has none without both. The three former names remain valid for citing the work published under them and must not be used for new work.
Why this one is unmarked. The former name, AI Governance Operating Model, is a descriptive phrase in common industry use: hard to register, weak to enforce, and impossible to own. That is the argument that produced CADRE rather than an argument against naming. The descriptive phrase survives as the descriptor, because it is what a reader searching for this subject will type. No trademark clearance search has been run on CADRE. That limitation is stated here for the same reason the corpus states it for the Five-Gate name: an unresolved clearance is a fact about the mark, not a detail to discover later.
On the name, and what the registry currently says.
CADRE stands for Charter, Authority, Decision rights, Records, Escalation. The five are drawn from the registry entry itself rather than fitted to the letters, which is the same defence MESA uses for its own expansion. Cadre independently means the nucleus of trained people an organisation is built around, which is what this framework specifies. The descriptor remains the AI Governance Operating Model and is not retired; it is what a reader searching for this subject will type. The published registry is version 1.0 and records this entry as "AI Governance Operating Model", unmarked. That file is immutable and the status band above is derived from it, so the two names will differ until registry version 2.0. Registry section 11.1 makes a canonical-name change a major version, and section 11.5 requires the identifier to survive it: this is REG-07 before and after. Cite REG-07, and cite version 1.0 for anything you read there today.
Three parts.
Structure is the office and its place in the three lines. Decision rights assign exactly one person accountable per decision. Cadence is the rhythm on which the function operates and the escalation paths on which disputes terminate. A cadence with no meeting records is not a cadence, and a decision right held by a committee is not a decision right.
Ninety days.
The source treatment carries a ninety-day path from board mandate to first operating cadence. It exists because the failure mode of a governance mandate is not rejection. It is a charter that is written, approved, and never converted into a meeting that happens.
Which institutions, and on whose authority.
The Operating Model describes how the governance function itself exists, in three lines of defence. It is calibrated to large regulated institutions, and an unadapted structure applied to a small one produces roles nobody holds.
The record of its own revisions.
A framework that cannot say how it changed reads as though it never has. This is drawn from the registry entry, which versions itself independently of the specification it points at.
Change history
- 2026-08-30 · entry v1.0 — First registry entry
- 2026-08-30 · entry v1.0 — Records the consolidation of the Governance Office Blueprint, the RACI-AI Matrix and the Governance Cadence Framework into this framework
Former names. Governance Office Blueprint · RACI-AI Matrix · Governance Cadence Framework. Each remains the correct citation for the work published under it and must not be used for new work.
Limitations recorded in the registry
- {"kind":"asserted","text":"That the structure fits institutions of different sizes. The source treatment is calibrated to large regulated institutions. A smaller institution MUST adapt the structure and SHOULD record what it adapted."}
- {"kind":"missing","text":"The consolidation has not been executed in the source book, which continues to assert the three former marks until a natural reprint. This registry is the authoritative statement in the meantime."}
- {"kind":"scope","text":"Specifies the governance function. Does not specify the competencies, training or individual credentials of the people in it."}
What would show this to be wrong. The Operating Model is falsified if institutions operating a chartered office with a documented single-accountable decision-rights assignment and a recorded cadence are found to escalate AI risks no earlier, and resolve them no more consistently, than institutions handling AI governance within existing risk committees without a distinct structure. The framework's claim is that a dedicated structure with named decision rights changes when and how a risk surfaces.
What this does not claim.
Scope. Calibrated to large regulated institutions. An unadapted structure applied to a small one produces roles nobody holds.
In progress. The consolidation has not yet been executed in the source book, which continues to assert the three former marks on its copyright page until a natural reprint. The registry is the authoritative statement in the meantime.
Citation.
Cite this framework. No standalone specification is deposited. Its authoritative treatment is Chapters 10 and 11 of the Enterprise Playbook, ISBN 978-1-0678960-1-0, read together with the consolidation notice at section 6.2, and its normative statement in citable form is registry entry REG-07 in 10.5281/zenodo.22170112.
In the practice.
- Governed production AI, the discipline this framework belongs to
- Defensible AI, the family and the register
- AI Governance and Compliance Frameworks for the Middle East, the source treatment
- Model risk, the service this framework is applied through
- AI governance in the wiring, on where governance actually lives