You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Full visual polish: framework, standards, about, blog pages
Framework page:
- Hide left nav
- Four pillars as grid cards with Material icons
- Same visual treatment as hipcharter.com
Standards page:
- Hide left nav
- NIST/OWASP/EU AI Act as grid cards with icons
- Deadlines highlighted (April 2, August 2026)
- Public Record table with DOIs and links
About page:
- Hide left nav
- Updated identity line to match all platforms
- Added HIP Charter reference and hipcharter.com link
- Added ORCID button link
- Full publications table: all 4 articles with DOIs
- Charter DOI and link
- NIST submission with DOI
- Trademark notice
Blog index:
- Title: From Instinct to Intent
- Subtitle describing the series
- Cross-links to Medium and Zenodo
Authors:
- Updated description to current identity
description: "Founded by Nikhil Singhal. 25 years of engineering leadership. Building the cross-provider AI governance layer no single vendor will build."
4
+
hide:
5
+
- navigation
4
6
---
5
7
6
8
# About
@@ -9,22 +11,56 @@ description: "Founded by Nikhil Singhal. 25 years of engineering leadership. Bui
9
11
10
12
### Nikhil Singhal
11
13
12
-
**CTO / VP Engineering / Seattle, WA**
14
+
**CTO | VP Engineering | AI Practitioner & Governance Strategist**
13
15
14
-
25 years leading engineering organizations at Microsoft, AT&T, T-Mobile, Expedia Group, and Hitachi Consulting. Building AI-powered products daily with Claude Code, GitHub Copilot, and MCP servers.
16
+
25 years leading engineering organizations at Microsoft, AT&T, T-Mobile, Expedia Group, and Hitachi Consulting. Building AI-powered products daily with AI as a full development partner.
15
17
16
18
I founded AI Trust Commons because the cross-provider governance layer the industry needs is something no single vendor will build. Every vendor solves for their own platform. This project solves for the enterprise that operates across all of them.
17
19
20
+
The building taught me something: the gap between what humans mean and what AI does is a governance problem. That insight became the [Human Intelligence Partnership Charter](https://hipcharter.com) and the *From Instinct to Intent*™ series.
An open-source initiative building the cross-provider governance layer that's missing. The connective tissue between what governments and organizations want AI to do (governance intent) and what AI systems actually do (technical enforcement).
31
+
An open-source initiative building the cross-provider governance layer that is missing. The connective tissue between what governments and organizations want AI to do (governance intent) and what AI systems actually do (technical enforcement).
32
+
33
+
---
34
+
35
+
## Publications
36
+
37
+
### The From Instinct to Intent™ Series
38
+
39
+
The core thesis: the bottleneck in AI is no longer the technology. It is humanity's ability to discover and express intent, what we actually want AI to do, in forms that machines can act on faithfully.
| 2 |[Languages Designed for Humans](https://aitrustcommons.org/blog/2026/03/13/languages-designed-for-humans/)|[10.5281/zenodo.19005877](https://doi.org/10.5281/zenodo.19005877)|
45
+
| 3 |[Engine vs Steering Wheel](https://aitrustcommons.org/blog/2026/03/14/engine-vs-steering-wheel/)|[10.5281/zenodo.19025149](https://doi.org/10.5281/zenodo.19025149)|
46
+
| 4 |[Stop Calling It Artificial](https://aitrustcommons.org/blog/2026/03/17/stop-calling-it-artificial/)|[10.5281/zenodo.19079578](https://doi.org/10.5281/zenodo.19079578)|
47
+
48
+
### The Human Intelligence Partnership Charter
49
+
50
+
Four patterns of human-AI partnership. Drop "artificial." Start building with intelligence.
51
+
52
+
[Read the Charter at hipcharter.com](https://hipcharter.com){ .md-button .md-button--primary }
53
+
54
+
Charter DOI: [10.5281/zenodo.19078843](https://doi.org/10.5281/zenodo.19078843)
55
+
56
+
### NIST Submission
57
+
58
+
| Title | Channel | DOI |
59
+
|-------|---------|-----|
60
+
| Public Comment on AI Agent Governance (~5,000 words) |[regulations.gov](https://www.regulations.gov/comment/NIST-2025-0035-0352)|[10.5281/zenodo.18903117](https://doi.org/10.5281/zenodo.18903117)|
61
+
62
+
---
27
63
28
-
The founder is publishing a series of articles and eventually a book under the trademark "From Instinct to Intent™." The core thesis: the bottleneck in AI is no longer the technology. It's humanity's ability to discover and express intent, what we actually want AI to do, in forms that machines can act on faithfully.
64
+
*All articles published on [aitrustcommons.org](https://aitrustcommons.org/blog/), [Medium](https://nikhilsinghal-ai-trust-commons.medium.com/), and [Zenodo](https://zenodo.org). From Instinct to Intent™is a registered trademark (USPTO Serial 99690685).*
29
65
30
66
[Read the Blog](blog/index.md){ .md-button .md-button--primary }
description: "Articles on the structural gap between human intent and machine execution. The From Instinct to Intent series by Nikhil Singhal."
4
+
hide:
5
+
- navigation
6
+
---
7
+
8
+
# From Instinct to Intent™
9
+
10
+
Articles exploring the structural gap between human intent and machine execution. What happens when you stop calling it "artificial" and start building with intelligence.
11
+
12
+
Also published on [Medium](https://nikhilsinghal-ai-trust-commons.medium.com/) and [Zenodo](https://zenodo.org).
Copy file name to clipboardExpand all lines: docs/framework.md
+31-13Lines changed: 31 additions & 13 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -1,37 +1,55 @@
1
1
---
2
2
title: "Governance Framework: Cross-Provider AI Agent Compliance"
3
3
description: "Four pillars of cross-provider AI governance: Standards Mapping, Policy-as-Code, Cross-Provider Audit Trails, and OWASP Validation. Open source, Apache 2.0."
4
+
hide:
5
+
- navigation
4
6
---
5
7
6
-
# Framework
8
+
# Governance Framework
7
9
8
10
AI Trust Commons is building the cross-provider governance layer that no single vendor will build. Every major cloud vendor publishes AI agent governance guidance for their own platform. None addresses what happens at the seams between providers.
Authoritative crosswalk across OWASP Top 10 for Agentic Applications, NIST AI RMF, SOC 2, and EU AI Act. Implement one control, get credit across multiple audits.
13
23
14
-
Authoritative crosswalk across OWASP Top 10 for Agentic Applications, NIST AI RMF, SOC 2, and EU AI Act. Implement one control, get credit across multiple audits.
24
+
The standards landscape for AI agents is fragmented. NIST publishes the AI Risk Management Framework. OWASP publishes the Top 10 for Agentic Applications. The EU AI Act imposes transparency obligations. SOC 2 auditors ask their own questions. AI Trust Commons maps these standards to each other so that a single technical control can satisfy requirements across multiple frameworks.
15
25
16
-
The standards landscape for AI agents is fragmented. NIST publishes the AI Risk Management Framework. OWASP publishes the Top 10 for Agentic Applications. The EU AI Act imposes transparency obligations. SOC 2 auditors ask their own questions. AI Trust Commons maps these standards to each other so that a single technical control can satisfy requirements across multiple frameworks.
Machine-readable compliance that operates at AI speed. Governance as a guardrail agents run alongside, not a gate teams stop and open.
30
+
Machine-readable compliance that operates at AI speed. Governance as a guardrail agents run alongside, not a gate teams stop and open.
21
31
22
-
Standards bodies write governance frameworks in natural language. No system can implement natural language automatically. Policy-as-Code bridges the gap between governance intent and technical enforcement by expressing compliance requirements in machine-readable formats that agents can evaluate in real time.
32
+
Standards bodies write governance frameworks in natural language. No system can implement natural language automatically. Policy-as-Code bridges the gap between governance intent and technical enforcement by expressing compliance requirements in machine-readable formats that agents can evaluate in real time.
Structured logs of what agents did, what data they accessed, and why, in a standard format that works across AWS, Azure, GCP, and hybrid environments.
36
+
---
27
37
28
-
Microsoft's MCP Gateway handles routing within Azure. Google's Agent Builder governs agents on Vertex AI. AWS Bedrock has its own guardrails. Each generates logs in its own format. AI Trust Commons defines a cross-provider audit trail format that lets enterprises trace agent behavior across all environments.
38
+
Structured logs of what agents did, what data they accessed, and why, in a standard format that works across AWS, Azure, GCP, and hybrid environments.
29
39
30
-
### OWASP Validation
40
+
Microsoft's MCP Gateway handles routing within Azure. Google's Agent Builder governs agents on Vertex AI. AWS Bedrock has its own guardrails. Each generates logs in its own format. AI Trust Commons defines a cross-provider audit trail format that lets enterprises trace agent behavior across all environments.
31
41
32
-
Automated validation against the OWASP Top 10 for Agentic Applications, from agent goal hijack to cascading failures.
The OWASP Top 10 for Agentic Applications identifies the most critical security risks for autonomous AI systems. AI Trust Commons provides automated validation tooling that tests agent deployments against these benchmarks before and during production operation.
44
+
---
45
+
46
+
Automated validation against the OWASP Top 10 for Agentic Applications, from agent goal hijack to cascading failures.
47
+
48
+
The OWASP Top 10 for Agentic Applications identifies the most critical security risks for autonomous AI systems. AI Trust Commons provides automated validation tooling that tests agent deployments against these benchmarks before and during production operation.
title: "Standards Engagement: NIST, OWASP, EU AI Act"
3
3
description: "AI Trust Commons engages with NIST AI Agent Standards Initiative, OWASP MCP Top 10, and EU AI Act Article 50 transparency compliance."
4
+
hide:
5
+
- navigation
4
6
---
5
7
6
8
# Standards Engagement
7
9
8
10
AI Trust Commons engages directly with the standards bodies defining AI agent governance, contributing practitioner experience to shape policy.
9
11
10
-
## NIST
12
+
---
13
+
14
+
<divclass="grid cards"markdown>
15
+
16
+
- :material-bank:{ .lg .middle } __NIST__
17
+
18
+
---
19
+
20
+
Active participant in the AI Agent Standards Initiative. Public comment submitted to the CAISI RFI on AI Agent Security ([DOI: 10.5281/zenodo.18903117](https://doi.org/10.5281/zenodo.18903117)). Listening session request submitted.
21
+
22
+
NCCoE Identity and Authorization concept paper in preparation, addressing how AI agents authenticate and authorize across provider boundaries. **Deadline: April 2, 2026.**
11
23
12
-
Active participant in the AI Agent Standards Initiative. Public comment submitted to the CAISI RFI on AI Agent Security (DOI: 10.5281/zenodo.18903117). Listening session request submitted.
24
+
- :material-shield-bug:{ .lg .middle } __OWASP__
13
25
14
-
NCCoE Identity and Authorization concept paper in preparation, addressing how AI agents authenticate and authorize across provider boundaries.
26
+
---
15
27
16
-
## OWASP
28
+
Contributing to the MCP Top 10 project and the Agentic Security Initiative, the benchmark framework for autonomous AI security.
17
29
18
-
Contributing to the MCP Top 10 project and the Agentic Security Initiative, the benchmark framework for autonomous AI security.
30
+
The OWASP Top 10 for Agentic Applications identifies the most critical security risks for autonomous AI systems. AI Trust Commons maps these risks to technical controls and provides automated validation tooling.
19
31
20
-
The OWASP Top 10 for Agentic Applications identifies the most critical security risks for autonomous AI systems. AI Trust Commons maps these risks to technical controls and provides automated validation tooling.
32
+
- :material-scale-balance:{ .lg .middle } __EU AI Act__
21
33
22
-
## EU AI Act
34
+
---
35
+
36
+
Article 50 transparency compliance tooling for high-risk AI systems. **Compliance deadline: August 2026.**
37
+
38
+
The EU AI Act imposes specific transparency and documentation requirements on AI systems operating in the European Union. AI Trust Commons provides tooling that helps organizations generate the required documentation from their existing governance controls.
39
+
40
+
</div>
41
+
42
+
---
23
43
24
-
Article 50 transparency compliance tooling for high-risk AI systems. Compliance deadline August 2026.
44
+
## Public Record
25
45
26
-
The EU AI Act imposes specific transparency and documentation requirements on AI systems operating in the European Union. AI Trust Commons provides tooling that helps organizations generate the required documentation from their existing governance controls.
46
+
| Submission | Channel | Reference |
47
+
|-----------|---------|-----------|
48
+
| NIST RFI on AI Agent Governance (~5,000 words) |[regulations.gov](https://www.regulations.gov/comment/NIST-2025-0035-0352)|[DOI: 10.5281/zenodo.18903117](https://doi.org/10.5281/zenodo.18903117)|
49
+
| NCCoE Identity and Authorization concept paper |AI-Identity@nist.gov| In preparation (April 2, 2026) |
0 commit comments