Governed work assessment

Define the result. Draw the boundary around it.

Use this form-free worksheet to evaluate one non-sensitive workflow before selecting a SautX workspace or changing an access path. Print or save it locally; the website does not collect the answers.

Start the worksheet

Published by SautXPublished August 11, 2026Updated August 11, 2026Version 1.0

Do not enter credentials, personal data, customer data, source code, system configurations, logs, or other sensitive operational content. This static page has no form and does not submit or store worksheet answers.

01 · Result

What must be completed?

  • Required result and acceptance condition
  • Business or operational owner
  • Deadline, duration, and close condition

02 · Actors

Who or what performs, approves, and reviews the work?

  • Approved people, services, and AI agents
  • Requester, approver, reviewer, and accountable owner
  • Identity, delegation, and human-control requirements

03 · Selected capability

What does the task actually require?

  • Applications, systems, data views, files, models, tools, compute, sandboxes, and endpoints
  • Allowed operations and current capability ceilings
  • Approved route, execution location, and output destination

04 · Authority to avoid

Which surrounding authority is not justified?

  • Standing network, credential, filesystem, storage, tool, or endpoint reach
  • Uncontrolled copies, open-ended transfer, or automatic publication
  • Authority that exceeds or outlives the defined task

05 · Crossings and outputs

What may enter, leave, or change?

  • Clipboard, upload, download, data input, credential use, tool calls, and protected-system actions
  • Review, control transfer, publication, artifact reference, and approved destinations
  • Exceptional inspection or recording, with separate purpose and authorization

06 · Lifecycle and evidence

How does the work close and remain attributable?

  • Request, policy decision, selected resources, route, and granted capabilities
  • Material operations, review decisions, crossings, output, and outcome
  • Expiry, teardown, residual-state handling, exceptions, and closure

07 · Workspace fit

Where does the work happen?

  • Existing protected application, server, desktop, or web resource → consider Secure Workspace
  • Selected data, models, tools, compute, applications, sandboxes, or endpoints → consider Agentic Workspace
  • Separate protected-system session after Agentic work → evaluate an explicit handoff between both