Model governance
modelPolicy: allowedProviders: - openai - azure-openai - ollama allowedModels: - gpt-5 - qwen3 forbiddenModels: - unapproved-model requirements: approvalStatus: approved encryption: true region: EU- Every agent model is validated against
modelPolicybefore the execution starts. - Substituted (fallback) models must satisfy the policy as well and the substitution is audited.
- A model can carry
approval,evaluationandregionmetadata; expired approvals do not satisfy a requirement.
Normative text: Model governance.