feat: Compliance Maximizer — Regulatory Optimization Engine
Some checks failed
Build + Deploy / build-admin-compliance (push) Successful in 1m45s
Build + Deploy / build-backend-compliance (push) Successful in 4m42s
Build + Deploy / build-ai-sdk (push) Successful in 46s
Build + Deploy / build-developer-portal (push) Successful in 1m6s
Build + Deploy / build-tts (push) Successful in 1m14s
Build + Deploy / build-document-crawler (push) Successful in 31s
Build + Deploy / build-dsms-gateway (push) Successful in 24s
CI / branch-name (push) Has been skipped
CI / guardrail-integrity (push) Has been skipped
CI / loc-budget (push) Failing after 15s
CI / secret-scan (push) Has been skipped
CI / go-lint (push) Has been skipped
CI / python-lint (push) Has been skipped
CI / nodejs-lint (push) Has been skipped
CI / nodejs-build (push) Successful in 2m27s
CI / dep-audit (push) Has been skipped
CI / sbom-scan (push) Has been skipped
CI / test-go (push) Failing after 37s
CI / test-python-backend (push) Successful in 42s
CI / test-python-document-crawler (push) Successful in 25s
CI / test-python-dsms-gateway (push) Successful in 23s
CI / validate-canonical-controls (push) Successful in 18s
Build + Deploy / trigger-orca (push) Successful in 4m35s

Neues Modul das den regulatorischen Spielraum fuer KI-Use-Cases
deterministisch berechnet und optimale Konfigurationen vorschlaegt.

Kernfeatures:
- 13-Dimensionen Constraint-Space (DSGVO + AI Act)
- 3-Zonen-Analyse: Verboten / Eingeschraenkt / Erlaubt
- Deterministische Optimizer-Engine (kein LLM im Kern)
- 28 Constraint-Regeln aus DSGVO, AI Act, EDPB Guidelines
- 28 Tests (Golden Suite + Meta-Tests)
- REST API: /sdk/v1/maximizer/* (9 Endpoints)
- Frontend: 3-Zonen-Visualisierung, Dimension-Form, Score-Gauges

[migration-approved]

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
This commit is contained in:
Benjamin Admin
2026-04-23 09:10:20 +02:00
parent 01bf1463b8
commit 1ac716261c
30 changed files with 3779 additions and 1 deletions

View File

@@ -0,0 +1,52 @@
package maximizer
import (
"encoding/json"
"fmt"
"os"
"path/filepath"
"runtime"
)
const defaultConstraintFile = "policies/maximizer_constraints_v1.json"
// LoadConstraintRules reads a constraint ruleset from a JSON file.
func LoadConstraintRules(path string) (*ConstraintRuleSet, error) {
data, err := os.ReadFile(path)
if err != nil {
return nil, fmt.Errorf("read constraint file %s: %w", path, err)
}
var rs ConstraintRuleSet
if err := json.Unmarshal(data, &rs); err != nil {
return nil, fmt.Errorf("parse constraint file %s: %w", path, err)
}
if rs.Version == "" {
return nil, fmt.Errorf("constraint file %s: missing version", path)
}
return &rs, nil
}
// LoadConstraintRulesFromDefault loads from the default policy file
// relative to the project root.
func LoadConstraintRulesFromDefault() (*ConstraintRuleSet, error) {
root := findProjectRoot()
path := filepath.Join(root, defaultConstraintFile)
return LoadConstraintRules(path)
}
// findProjectRoot walks up from the current source file to find the
// ai-compliance-sdk root (contains go.mod or policies/).
func findProjectRoot() string {
_, filename, _, ok := runtime.Caller(0)
if !ok {
return "."
}
dir := filepath.Dir(filename)
for i := 0; i < 10; i++ {
if _, err := os.Stat(filepath.Join(dir, "policies")); err == nil {
return dir
}
dir = filepath.Dir(dir)
}
return "."
}