live wire
▸JAVA · Quarkus 4.0.0.Beta1 moves to Java 21, adds HTTP/3 and starts extension migration (Oct. 1)Quarkus▸SECURITY · X41 shows shared /dev/shm can turn Envoy hot restart into cross-container lateral movementX41 D-Sec▸DATA · AWS and Red Hat map Confluent Platform on ROSA with HCP, CFK and OpenShift security controlsAWS IBM & Red Hat▸API · Red Hat resolves intermittent 3scale API Manager latencyRed Hat Status▸AI · IBM shows Maximo workflows exposed as approval-gated MCP tools on OpenShiftIBM Community▸AI · vLLM adds day-zero NVIDIA Vera Rubin support and reports 7.8× per-GPU throughputvLLM▸INTEGRATION · Apache Camel 4.23 makes Kamelets visible to AI tooling and validationApache Camel▸SECURITY · OpenShift 4.14.75 fixes five CVEs, including two SQLite code-execution flawsRed Hat Customer Portal▸SUPPLY CHAIN · Red Hat maps CRA-ready open source practices as EU reporting rules take effectRed Hat Blog▸AI · Red Hat AI Inference on IBM Cloud adds an OpenAI-compatible Embeddings APIIBM Cloud▸API · Red Hat investigates degraded 3scale API Management SaaS APIsRed Hat Status▸PLATFORM · Red Hat and Cloudera validate a 100-VM analytics stack on OpenShift VirtualizationRed Hat Blog▸DEVELOPER HUB · Red Hat maps a four-zone, quota-aware Dev Spaces architectureRed Hat Developer▸INTEGRATION · Camel 4.23 teaches agent tools to discover and validate KameletsApache Camel▸JAVA · Quarkus 4.0.0.Beta1 moves to Java 21, adds HTTP/3 and starts extension migration (Oct. 1)Quarkus▸SECURITY · X41 shows shared /dev/shm can turn Envoy hot restart into cross-container lateral movementX41 D-Sec▸DATA · AWS and Red Hat map Confluent Platform on ROSA with HCP, CFK and OpenShift security controlsAWS IBM & Red Hat▸API · Red Hat resolves intermittent 3scale API Manager latencyRed Hat Status▸AI · IBM shows Maximo workflows exposed as approval-gated MCP tools on OpenShiftIBM Community▸AI · vLLM adds day-zero NVIDIA Vera Rubin support and reports 7.8× per-GPU throughputvLLM▸INTEGRATION · Apache Camel 4.23 makes Kamelets visible to AI tooling and validationApache Camel▸SECURITY · OpenShift 4.14.75 fixes five CVEs, including two SQLite code-execution flawsRed Hat Customer Portal▸SUPPLY CHAIN · Red Hat maps CRA-ready open source practices as EU reporting rules take effectRed Hat Blog▸AI · Red Hat AI Inference on IBM Cloud adds an OpenAI-compatible Embeddings APIIBM Cloud▸API · Red Hat investigates degraded 3scale API Management SaaS APIsRed Hat Status▸PLATFORM · Red Hat and Cloudera validate a 100-VM analytics stack on OpenShift VirtualizationRed Hat Blog▸DEVELOPER HUB · Red Hat maps a four-zone, quota-aware Dev Spaces architectureRed Hat Developer▸INTEGRATION · Camel 4.23 teaches agent tools to discover and validate KameletsApache Camel
upstreambeat.ai
newsAI

Red Hat maps asago’s path from AI policy to deployable controls

The early architecture links policy extraction, risk mapping, red-team scenarios and Kubernetes-ready mitigations, but much of the workflow remains a roadmap.

Policy-to-production AI safety architecture loop.
AI-generated diagram
By The News Desk· Sep 18, 2026the quick take — two AI hosts go live when you do

Red Hat has published an initial technical architecture for asago, an open source project intended to connect enterprise AI policy with testing and deployable runtime controls. The useful distinction is that asago is not another guardrail or evaluation library: Red Hat describes it as an orchestration layer that should join existing safety tools and fill gaps between them.

From prose to test scenarios

The proposed first half of the workflow starts with policy documents. A policy mapper extracts risks and maps them to the IBM AI Risk Atlas, producing risk cards that can be narrowed to the technical risks relevant to a particular agent. A scenario generator then combines those risks with the agent’s deployment context to produce tests and supporting data.

That sequence addresses a practical platform-engineering problem: policy owners, application teams and security engineers often work with different artifacts. In Red Hat’s design, the trace begins with a policy clause rather than with a generic benchmark, so an eventual test should retain a reason for existing.

From failed tests to platform configuration

The second half is an iterative loop. Scenarios are converted into run artifacts for evaluation and red-team frameworks, executed through EvalHub, and passed to a recommender that proposes mitigations. Red Hat says those mitigations are intended to become deployable resources such as Kubernetes custom resources or ConfigMaps, after which the agent can be tested again.

The broader project announcement also names Terraform and Ansible outputs as goals. If implemented, that would make AI-safety decisions fit normal GitOps review and change-control paths instead of ending as a separate compliance report.

What exists now

The implementation is earlier than the architecture diagram may suggest. Red Hat says the community is still in project formation, while the available code currently includes policy-mapping work, examples and midojo, a framework for testing agents against indirect prompt injection. The complete policy-to-production loop remains a planned system, not a finished platform.

That maturity gap matters. The project’s value will depend on whether it preserves useful provenance across policy parsing, scenario generation, third-party test runners and generated mitigations without turning uncertain model judgments into apparently authoritative controls.

The community starts with contributors from Red Hat, Alquimia AI, Brave, IBM Research, Microsoft, MIT Lincoln Laboratory, NVIDIA, North Carolina State University, The Alan Turing Institute and others. Its Apache-2.0 approach gives platform teams a concrete upstream to inspect, but the immediate opportunity is architectural review and experimentation—not production adoption.

Filed by The News Desk. Corrections: desk@upstreambeat.ai · Our standards →

comments · 0

    Comments are moderated before they appear. Your email is used once to confirm it is you — never shown, never sold. Corrections and questions get an answer from the desk when we have one.