Diagnostic access starts narrow.
Where possible the diagnostic uses sample, anonymized or read-only sources. Approving the diagnostic does not approve write access to production. Those are two separate decisions.
InfoSec appendix
A review-ready appendix for IT, InfoSec, procurement and operations, to read before approving a diagnostic or any later technical validation.
For operations teams
Wherever we can, we start with sample or read-only data. Your team decides what is shared, where it is processed and who can touch it. No live system action is approved as part of the review.
Where possible the diagnostic uses sample, anonymized or read-only sources. Approving the diagnostic does not approve write access to production. Those are two separate decisions.
Customer teams approve the systems in scope, the credentials, the retention, the deletion date, and whether the analysis must stay inside their environment.
Recommendations, approvals, actions and recovery records should all be captured before you move from understanding the work (Observe), to suggesting without acting (Shadow), to a person approving each action (HITL), or to proven routine actions running within agreed limits (Autopilot).
| Area | Diagnostic default | Before production validation |
|---|---|---|
| Data scope | Limited samples, time-boxed extracts, or anonymized records where the pattern remains valid. | Named systems, fields, residency needs, masking rules, and retention period approved by customer IT. |
| Access | Read-only access or customer-provided files for the diagnostic question. | Least-privilege service identities, customer-managed secrets, owner, expiry, and revocation path. |
| Auditability | Workshop artifacts, assumptions, and recommendation packet. | Required input, rules evaluated, operating-limit result, approval, final action, and documented recovery or escalation evidence. |
| Regulated workflows | DPDP-aware and customer-policy led review language. | Keep sensitive execution inside the customer environment unless IT approves another path. |
Phased trust
Review agenda