Existing computerised-system validation, electronic-record, software-assurance, quality-risk, and AI-governance frameworks remain applicable. This standard defines additional requirements for agent-specific failure modes: runtime drift, wrong-source grounding, memory poisoning, model-mediated tool use, delegated credentials, human authorization, and audit reconstruction.
Conformance requires evidence. Self-attestation without supporting telemetry, reviewed architecture, test results, runtime records, and approval history is not sufficient.