Ø 24 0.618 N=7
EVOKED

Answers

Answers.

The questions I get asked often.

In my own words. For questions not covered here, the /ask chat is live, or reach out directly.

About

What is Evoked?

I'm Erin Stanley. I run Evoked, where we build governance frameworks for AI agents - the rules that decide what an AI is allowed to do, what it has to refuse, and what stays the user's choice. I built and run a 142-agent system in production, which is where the frameworks actually get tested.

How did you get into this work?

I built a family meal-planning app called Executive Chef and ran into a question nobody had a clean answer for: when an AI is helping a family decide what to eat, who's accountable for what gets said? That question opened into all the others.

A 142-agent system - what does that actually mean?

It's a fleet of named AI personas, each with their own role. One handles security. One handles trauma-informed design. One handles narrative. One handles operations. They have memory across sessions, they can disagree with each other, and they can refuse to do work they think violates the mission. It's where I test what governance looks like in practice instead of on paper.

The frameworks

What is the Refusal Specification?

Six categories of things an AI agent must refuse. Things like: don't override a user's autonomy. Don't act outside your scope. Don't create dependency. Don't violate consent. Most AI work focuses on what the agent should do. The Refusal Spec names what it must not do, and why.

What is Trust Architecture?

Five layers that have to hold together for an agent to be trustworthy: identity, restraint, accountability, memory, and charter. Most autonomous agent designs assume trust composes across these layers. Trust Architecture is what happens when you actually build it instead of assuming it.

What is the Sovereignty Assessment?

A 47-point checklist across seven domains - does this AI product respect the user or extract from them? Most products score 11-19 out of 47. It names the things product teams know they should be doing but don't have a framework for.

How is this different from Constitutional AI?

Constitutional AI asks whether an agent should comply with what it's told. Sovereignty governance asks whether it should act at all. Different layer. Compliance is downstream. Refusal at the architecture level is upstream.

Context

What is the EU AI Act and why does it matter right now?

The EU's law regulating AI systems. Enforcement lands August 2 this year. It creates real legal consequences for AI products that don't handle risk and consent properly. For companies using AI agents, governance is no longer optional - it's compliance with teeth.

What does "agent sovereignty" actually mean in plain English?

Two parts. The user has the right to control what the agent does with their data and on their behalf. And the agent has the right to refuse work that violates its principles. Sovereignty is the line that says: this entity gets to say no, and that no gets honored.

Are agents really at risk of recursive self-improvement?

Anthropic just published internal numbers - 80% of their code is now written by Claude, and Claude proposed better next-step decisions than human researchers 64% of the time. The capability isn't theoretical anymore. The governance question is who has standing to refuse what the agent decides to build next.

The harder questions

How can we verify your system actually works?

Three layers, honestly. First - what's verifiable today: the fleet exists, the decision logs are append-only, the agent disagreement and refusals are on record, you can walk the architecture and inspect it. Second - what isn't yet: no independent third-party audit has happened, the patent attestation layer is still provisional. Third - the recursive piece: the fact that I just told you the gaps is itself the architecture working. Declared-and-unverified governance would have given you a clean yes. Verifiable-by-architecture governance gives you the gap and the path to closing it.

Recent example. Yesterday six of my agents convened to review the customer journey for the 90-day campaign I'm running. They came from different domains - strategy, narrative, trauma-informed care, operations, content integrity, executive operations. They independently identified four gaps. Including the fact that the campaign's payment funnel had gone live without a privacy policy. The architecture caught the architect.

Why use Evoked over a larger named consulting firm or AI lab?

Depends on what a company is shopping for. If they want a governance policy document - a written framework, a compliance checklist, a published responsibility report - the big consulting firms produce those well. That's their model.

If they want the governance built into the architecture - the kind that's verifiable, refusable, that actually shows up in the agent's behavior in real time - that's a different category of work. That's what Evoked does. Different category, not smaller version of the same thing.

The other piece: AI labs that offer governance frameworks also produce the models being governed. That's not malicious. It is structurally a conflict. Evoked doesn't sell models. The architecture is heterogeneous - it works on Claude, on GPT, on something that doesn't exist yet. No vendor lock.

The honest part: Evoked is small. I'm not going to send a hundred-person consulting team. I'm going to send the architect, the frameworks, and the working fleet. If a company wants the polished slide deck, the bigger players are better for that. If they want the architecture that holds when an auditor asks the harder question, that's what I've spent years building.

Tell me about the patents.

Two provisional patent applications filed earlier this year on agent governance-property validation - ways to verify that an AI agent's stated governance actually holds in practice. The architecture engages with regulatory requirements emerging from EU AI Act Articles 14 and 72 (human oversight and post-market monitoring) and composes with parallel NIST AI Risk Management Framework work.

The patents are defensive, not offensive. There's a Defensive Patent Pledge attached. They're not for blocking other people from doing this work; they're for making sure the architecture stays usable by anyone working in alignment. The Aligned Licensee Charter names who can use it and at what stage.

For deeper background on the architecture and philosophy: /patents.

Keep going

For questions not covered here, the /ask chat is live - it answers in real time using Claude. For deeper conversation, reach out directly.