Skip to content

PDP Deep Dive

Architecture and operations: policy hierarchy, PIPs, PEPs, budgeting lifecycle, content classification, behavior analytics, and receipts.

← PDP product page

Policy hierarchy

Doctrine in YAML (immutable); runtime parameters (e.g., budgets) in JSON on delegation edges. Short‑circuit by PDP_application attribute; denies override allows.

PIPs

PEPs

Budget lifecycle

  1. Pre‑gate (PDP): evaluate budget against live Analytics state; may return budget_hold obligation.
  2. Execute (PEP): enforce constraints (stream caps, model allow‑list).
  3. Settle (PEP): reconcile actual usage; release/charge hold.

Content classification & behavior analytics

Receipts

All decisions/actions produce signed, hash‑chained receipts for tamper‑evident audit.