National Institute of Standards and Technology · Official Framework Hub
NIST AI Risk Management Framework
NIST's voluntary framework for incorporating trustworthiness considerations into the design, development, use, and evaluation of AI systems.
- Status
- Current With Revision Underway
- Published
- 2023-01-26
- Reviewed
- 2026-08-01
Use boundary: Use as risk-management guidance; do not describe alignment as certification or legal compliance.
Open official source↗International Organization for Standardization · Official Standard Page
ISO/IEC 42001:2023 — AI management systems
Requirements and guidance for establishing, implementing, maintaining, and continually improving an AI management system within an organization.
- Status
- Current
- Published
- 2023-12
- Reviewed
- 2026-08-01
Use boundary: Do not claim certification unless an accredited audit and certification process has been completed.
Open official source↗International Organization for Standardization · Official Standard Page
ISO/IEC 42006:2025 — bodies providing audit and certification of AI management systems
Requirements intended to support consistent and credible audit and certification of AI management systems against ISO/IEC 42001.
- Status
- Current
- Published
- 2025
- Reviewed
- 2026-08-01
Use boundary: This standard concerns certification bodies; it is not itself an organizational certification.
Open official source↗OWASP GenAI Security Project · Official Security Taxonomy
OWASP Top 10 for Agentic Applications
A community-developed taxonomy covering ten major agentic application risk areas, from goal hijacking and tool misuse through memory poisoning, cascading failures, and rogue agents.
- Status
- Current
- Published
- 2025-12-09
- Reviewed
- 2026-08-01
Use boundary: Use as a threat-oriented taxonomy and mitigation aid, not as a certification or guarantee of security.
Open official source↗Model Context Protocol · Official Protocol Specification
Model Context Protocol Specification — 2026-07-28
The reviewed MCP specification defines an open protocol for connecting language-model applications with contextual resources, prompts, and tools through host, client, and server roles.
- Status
- Current Reviewed Version
- Published
- 2026-07-28
- Reviewed
- 2026-08-01
Use boundary: MCP is an interoperability protocol, not a complete agentic control plane, governance program, or security guarantee.
Open official source↗OpenTelemetry · Official Specification Hub
OpenTelemetry semantic conventions for generative AI systems
Official semantic-convention material for interoperable telemetry describing generative AI operations.
- Status
- Evolving
- Reviewed
- 2026-08-01
Use boundary: Record the exact convention version implemented because names and stability levels can evolve.
Open official source↗Official-source citations establish provenance and scope. They do not establish LongTermIntelligence.com certification, endorsement, legal advice, client outcomes, or a guarantee that a control is effective.