Code-first framework · open pattern

Govern your Microsoft Semantic Kernel agents.

Wrap the loop. Ledger every act. Prove delivery.

Kernel function-invocation filters intercept every skill call — the ownership gate and the ledger write fit in a single filter.

Why govern Semantic Kernel agents

Your agents already act — now they answer

Every tool call becomes an append-only action row: input, output, cost, verified outcome. When a customer, an auditor, or your own CEO asks what the agents did, the answer is a query, not a vibe.

Governance without changing your stack

The adapter rides the framework’s existing callback and middleware points — no rewrite, no new runtime, no lock-in. The standard is open under CC BY 4.0 and the method is free forever under the covenant.

Catch performed autonomy before your customers do

Agents that look busy but don’t verifiably ship are this generation’s failure mode. The sweep measures verified outcomes against the record — never the logs’ self-report.

How it works with Microsoft Semantic Kernel

The pattern for code-first agent frameworks: A middleware/callback adapter over the framework’s own hooks: tools registered as levers, ownership checked at the call chokepoint, every action written to an append-only ledger, duty completion keyed to verified outcomes.

Why Semantic Kernel fits: Kernel function-invocation filters intercept every skill call — the ownership gate and the ledger write fit in a single filter.

  1. Add the adapter (or follow the documented recipe) — it hooks the framework’s existing callback or middleware points.
  2. Register every tool your agents can touch as a lever with a named owner; unowned calls stop at the gate.
  3. Route actions through the append-only ledger: input, output, cost, and the verified outcome — not the trusted return value.
  4. Define duties — the recurring work your agents owe — and key completion to outcomes, not activity.
  5. Connect the free GOVENANT Audit and run a trust sweep; hand the report to whoever needs to trust the system.

The full requirements live in the open standard (CC BY 4.0) — the substrate shapes, the acceptance tests, and the conformance ladder your record is measured against.

What you can claim

From day one of a real integration you can wear the Built-on GOVENANT badge under its four rules — real integration, a disclosure line, a link to the standard, no certification implication. From there the ladder is public: Logged → Gated → Delivered → Earned. Levels are self-assessed against the open standard and published to the registry with their probe logs, open to anyone’s challenge — no authority hands out stamps, which is exactly why a published record means something.

Status — kept honest

Integration pattern: documented (this page). The Semantic Kernel adapter, mapping, or worked example is being built in the open — progress, scope, and acceptance criteria live in the public GitHub issue. This page will not say “supported” before that issue closes with a working example. Holding our own pages to the standard’s claims discipline is not modesty; it is the product.

Build this with us

For agencies, consultancies, and product teams shipping on this stack: govern what you build and the governance record becomes the differentiator — every proposal ends with “and you’ll be able to prove it works.” We co-market shipped integrations, list governed implementations in the registry, and route inbound “govern my agents” demand for this stack to the people who built its adapter.

Microsoft Semantic Kernel governance — FAQ

Do I have to replace my framework?
No. GOVENANT governs the substrate — the durable record of what agents did and whether it verifiably delivered — not the framework. Your framework keeps running your agents; the adapter makes their work provable.
What does the integration cost?
The standard, the pattern, and the adapters are open source, and the audit is free — the method is free forever under the covenant. What’s paid is optional attestation: the witnessed, signed, hosted record of your results and the live badge.
What is “performed autonomy”?
Agents that look busy — fluent plans, satisfied logs — but don’t verifiably ship. Motion is not delivery. GOVENANT measures verified outcomes against the record, never the logs’ self-report.
What is GOVENANT, and who controls it?
An open standard for provable AI agent governance: three laws, a conformance ladder, and acceptance tests any implementation can run against its own record. It is free to all under CC BY 4.0 with a citable companion paper (DOI 10.5281/zenodo.21440225), and conformance is self-assessed and published openly — no certifying authority, no gatekeeper.

More code-first agent frameworks

Different stack? Browse all 45 integrations — or run the free audit from any MCP-capable tool.