Classification Semantics Standard (CSS-001)
Use this skill when you need to declare, derive, compare, or audit PUBLIC | INTERNAL | CONFIDENTIAL | RESTRICTED classification.
When to Use
- •Defining or reviewing
dataClassificationfor OCS capabilities - •Defining or reviewing blueprint descriptor
security.classification - •Implementing RESTRICTED gating behavior for MCP tools (approval required)
- •Writing audits/certification checks that reason about classification
Instructions
- •Use the CSS-001 lattice and ordering for all comparisons.
- •Require explicit declaration of blueprint classification in descriptors (BDS-001) and capability classification (OCS).
- •Enforce derivation: blueprint.classification must be >= max(invoked capability classifications).
- •Gate RESTRICTED: RESTRICTED tools must require explicit approval artifacts per AECS-001.
See references/classification-semantics-standard.md for the normative specification.