The governance layer for autonomous systems
DSI 001 is the system-level governance classification and evidence layer institutions use before they insure, fund, approve, procure, lend to, or rely on autonomous systems.
One standard, three roles, kept apart
The separation is what keeps a GBI result portable and credible at claim time, for the same reason an audit is credible: the auditor does not prepare the accounts.
The organisation, with a preparation tool if it chooses, assembles and preserves the governance evidence. Preparation never scores, classifies or certifies.
The assessor, authorised by Decision Standards Institute under the DSI 001 scheme, evaluates the evidence and issues the GBI result, independently of preparation.
Decision Standards Institute publishes and maintains the standard, hosts the framework, the crosswalks and the registers, and does not assess.
Common control, disclosed. The assessor currently operating under DSI 001, Attestra Pty Ltd, is under common control with the operator of the Custara evidence product. This is disclosed on every report. The Institute publishes and governs the standard and sits outside that ownership group.
What the classification means
Your path to a classification
If you run an autonomous system and want a classification you can show, the path has six steps. Preparation and assessment are separate parties by design.
Who uses it
The evidence a board needs to answer who held authority, what they knew, what they did.
ExploreA governance evidence record underwriting can evaluate, refer or condition.
ExploreEvidence relevant to valuation, IC review, conditions, monitoring and exit.
ExploreA portable, system-level classification for embedded AI vendors.
ExploreMapped to each regime, with its limits stated.
ExploreHow the GBI is built, and what DSI 001 adds to ISO 42001, SOC 2 and NIST.
ExploreCompare before you decide
See where DSI 001 complements ISO 42001, SOC 2, and NIST AI RMF, and where it adds an independent deployment-level read those frameworks do not provide.