Skip to main content

Risk Classification

Risk Levels

LevelDescriptionExamples
MINIMALNo external effectsRead-only, computations
LIMITEDScoped, reversibleUser data ops, internal comms
SIGNIFICANTExternal impactExternal comms, sensitive data
HIGHMajor impact, irreversibleFinancial, permissions, bulk ops

Governance Requirements

RiskTrust RequiredApprovalAudit
Minimal100+AutomaticLog
Limited300+AutomaticLog
Significant500+ConditionalLog + Alert
High700+HumanLog + Anchor

Risk Assessment Factors

  • Reversibility of the action
  • Scope of impact (users affected)
  • Sensitivity of data involved
  • Financial implications
  • Regulatory implications

REQ-RSK-001: Every action MUST be classified by risk level.

REQ-RSK-002: When factors conflict, higher risk level MUST apply.