Runtime controls
EvalGate is not limited to a post-run CI score. Governed platform calls can evaluate provider, model, data, cost, permission, and side-effect policy before external execution, then attach the decision to the resulting evidence.Enforcement points
Model and provider policy
The Model Gateway evaluates a fixed policy order before a governed model call:- active gateway and allowed use case;
- provider and model allow/block policy;
- declared data policy, including a zero-data-retention requirement when configured;
- judge calibration requirement;
- maximum cost per request; and
- remaining organization budget.
PROVIDER_BLOCKED,
MODEL_NOT_IN_ALLOWLIST, CALIBRATION_REQUIRED, or BUDGET_EXCEEDED. It is not
converted into a successful score.
PII and egress
PII detection, redaction, raw-storage policy, and external-transfer policy are separate controls. The exact behavior depends on the documented surface:- shared exports redact configured sensitive fields;
- integrated provider and judge paths evaluate organization PII and egress policy;
- data classification can deny external LLM, webhook, or export destinations; and
- redaction or policy telemetry does not prove that traffic sent outside an integrated EvalGate path was inspected.
Side effects and approval
Agent evidence policy can allow, deny, or require approval using a versioned permission profile. Delete, money movement, permission changes, deployment changes, legal commitments, and safety-critical actions are treated as intrinsically approval-sensitive. A connector-manifest mismatch fails closed. This policy does not grant a connector more authority than its underlying API credential. Keep the external system’s least-privilege permissions in place.Connect runtime and release evidence
Use the runtime decision as one input to the release loop:Verify your boundary
- Route a staging call through the exact integration used in production.
- Prove an allowed provider/model call reaches the configured adapter.
- Prove a blocked provider, over-budget request, and protected side effect do not.
- Confirm the denial reason and policy snapshot are visible to the reviewer.
- Confirm an uninstrumented direct provider call is documented as outside the EvalGate enforcement boundary.
Related guides
- Connect controls to actual evidence — Requirement → enforcement → observation → remaining uncertainty
- Read evaluation evidence — Observation versus terminal outcome