Skip to content

Bluefly Agent Governance Starter Kit

Superseded 2026-08-03: the Founder Decisions doctrine in Engineering-Standard/glossary/platform-glossary.md governs current execution. The claim that "ContractPlane evidence store is live and ingesting Gas Town receipts in production" (below) is NOT independently verified in this pass -- do not repeat as fact without checking current ContractPlane state. Pricing/ SLA figures below are DRAFT sales copy, not verified facts.

Version: v3.6.1 | Date: 2026-05-21 | Status: DRAFT

Target Buyer

VP Engineering, Platform Architect, or CTO at organizations running Drupal 11+ or Kubernetes who are deploying AI agents into production and need governance, auditability, and compliance from day one.

The Pain

Your agents are already running. But you cannot answer:

  • Which agent made that decision?
  • What memory did it access?
  • Who authorized the tool call?
  • Is there an evidence trail for the regulator?
  • Can you port your agent definitions to a different runtime tomorrow?

Every team is building its own memory, its own audit log, its own policy enforcement. There is no standard. There is no portability. There is no trust layer.

The Offer

A production-ready governance foundation that ships as a Drupal recipe + OSSA manifests + ContractPlane evidence integration. Install it once. Get:

  1. OSSA Agent Manifests — Portable agent definitions (identity, capabilities, constraints, governance) that work across 12+ runtimes. Your agents are not locked to one vendor.
  2. ContractPlane Evidence — Append-only evidence ledger for every memory write, policy decision, tool call, and delegation event. Every action has a receipt.
  3. Memory Governance — Three-tier memory hierarchy (global → domain → agent) with promotion controls and Cedar policy gates. Agents cannot escalate their own memory without operator approval.
  4. Cedar Policy Enforcement — Declarative authorization policies that control which agents can read, write, promote, or delete memory. No custom PHP access control.
  5. Drupal AMCS Starter Recipe — One `composer require`, one `drush recipe:apply`. Working agent governance in under 30 minutes.

Package Contents

Component What Ships
OSSA Memory Contract `spec/v0.5/memory-contract.schema.json` — portable memory contract schema
29 Agent Templates Pre-built OSSA manifests via `ai_agents_ossa`
ContractPlane Evidence Events 12 memory-specific event types with integrity hashing
Cedar Memory Policies 8 starter policies for memory read/write/promote/deny
Drupal Starter Recipe `bluefly/amcs-starter` — recipe that wires contrib + config
Accessibility Reviewer AMC First governed AMC bundle with memory + evidence
Launch Demo Script `amcs-demo-script-governed-agent-that-remembers.md` — scripted demo script
LiteLLM Reference Config Pre-configured proxy for Claude, GPT-4o, Ollama

Why Now

  • Drupal AI ecosystem shipped `drupal/ai` (40+ providers), `drupal/ai_agents` (plugin-based agent framework), `drupal/tool` (large MCP-compatible tool library), and `drupal/ai_context` (structured context storage) — the platform is ready.
  • OSSA v0.5.1 is stable with 10 MCP tools, 12 export targets, and production CLI.
  • ContractPlane evidence store is live and ingesting Gas Town receipts in production.
  • Enterprise buyers are asking "how do I audit my agents?" today, not next year.
  • EU AI Act compliance deadlines are approaching. Evidence trails are not optional.

Pricing Tiers

Tier Annual Price Includes
Starter $2,400/yr Recipe + 5 AMC bundles + community OSSA support
Agency $9,600/yr Recipe + 15 AMC bundles + Cedar policies + priority support
Enterprise $24,000/yr Full kit + unlimited AMCs + ContractPlane SaaS + MemoryPlane + dedicated onboarding

Add-Ons

Add-On Annual Price
Evidence Cloud $6,000/yr — hosted ContractPlane evidence with 99.9% SLA
MemoryPlane $4,800/yr — managed Qdrant + governed memory API
Certification Program $3,600/yr — OSSA compliance certification for your agent fleet
Implementation Services $200/hr — Bluefly engineers deploy and configure your governance stack

CTA

Start governing your agents today.

  • Install: `composer require bluefly/amcs-starter`
  • Book a governance audit: https://bluefly.io/governance-audit
  • See the launch: https://bluefly.io/launch/governed-agent-that-remembers
  • Read the standard: https://openstandardagents.org

Differentiator Summary

Others Sell We Sell
"AI agents" Accountable agents
Custom code A standard (OSSA)
Chat logs Evidence with integrity hashes
Role-based access Cedar policy enforcement
Vendor lock-in 12+ runtime portability
Siloed memory Governed three-tier memory with promotion controls