A real incident
The chapters next door build the operating layer that would have caught New York City's official chatbot before the public did.
The chapters
59 min total
- The operating layer7 minAn ownership inventory of every place your product speaks and every input it depends on
- Ownership: one name7 minAn owner map with one accountable name and a sign-off rule on every row that moves behavior
- Change control: release it8 minA release gate for every change: evals, owner sign-off, a canary, and a tested rollback
- Govern the knowledge7 minA one-page curation policy deciding which sources may enter your product's index
- Govern access and safety7 minWho-may-see-what rules per requester tier, refusals that do not leak, and an audit trail
- Incident response8 minA one-page incident runbook: a severity ladder, first-hour moves, and a named comms owner
- Build the team7 minA skills matrix and hiring rubric so no single resignation stalls your release gate
- The Operations Charter8 minThe signed Operations Charter and the standing operating review that keeps it true
The sum
Each chapter leaves behind one page of the operating layer. The closing chapter binds those pages into the signed Operations Charter, with one person accountable for how the whole product behaves.
The Operations Charter PDF fills in section by section across the chapters and leaves you a signed page stating how your product is run.
The Operations CharterFillable PDFDownload →