Human disposition and separation of duties
AI may extract, compare, explain, and propose. Approval, signature, closure, effectiveness acceptance, waiver, release, and external dispatch remain fresh human or deterministic authority ceremonies.
QRI is designed so models and agents can assist an investigation without becoming the approver, signer, source of record, or external dispatcher. Every supported operating claim is tied to an exact qualified release and deployment profile.
AI may extract, compare, explain, and propose. Approval, signature, closure, effectiveness acceptance, waiver, release, and external dispatch remain fresh human or deterministic authority ceremonies.
Governed records retain source identity, versions, digests, mapping and capture receipts, model/package/policy details, citations, and human dispositions rather than treating generated text as authority.
Authorization is applied before traversal, counts, summaries, search candidates, model input, API output, or future MCP responses so hidden records cannot leak through derived context.
QRI is designed for customer-local and disconnected deployment under exact qualified infrastructure profiles. Public-cloud fallback, model downloads, telemetry, or internet dependency are never implied by the marketing page.
A QRI pilot or production deployment must state the supported operating system, database, ingress, identity provider, artifact storage, model packages, source rights, retention, backup and restore, incident responsibilities, and writeback boundary. QRI does not claim regulatory certification simply because the software is installed.