Continuous Compliance
Kind: capability
Layer: Security Core
Record: architecture:continuous-compliance
Severity: contextual
Scope: CI/CD, infrastructure, codebase
Canonical: Ontology
The ability to check compliance on every change, with automated policy gates and evidence capture.
Listed in Architecture principles, after Risk Management and before CSRF Protection.