Red Hat Launches asago AI Governance Project

Red Hat announced asago on August 4, an open-source project intended to translate AI governance policies into risk tests, recommended safeguards and deployment configurations. The project is still in its formation phase, so its promised Kubernetes, Terraform and Ansible outputs are a roadmap rather than production-ready capabilities.
Red Hat announced the formation of asago, short for AI Safety and Governance Orchestration, on August 4. The open-source project is intended to connect written governance requirements with the technical work needed to test and deploy AI systems. It is currently in its project formation phase; Red Hat has not announced a generally available release or a production-readiness date.
From policy text to deployment controls
Red Hat describes a planned four-stage workflow. Asago would first map an organization’s policies to frameworks such as the NIST AI Risk Management Framework, the OWASP Top 10 for Large Language Model Applications and the EU AI Act, using IBM’s AI Risk Atlas. It would then generate use-case-specific safety tests, recommend mitigations based on the results and turn approved controls into configurations for Kubernetes, Terraform and Ansible.
The intended output is not just a set of guardrails. The project aims to preserve an audit trail connecting a policy clause to the corresponding risk assessment, test evidence and runtime control. That traceability could reduce the manual translation work now split among compliance, data-science and infrastructure teams. Whether the implementation can support that chain reliably remains to be demonstrated as the code and governance mature.
A multi-organization effort
Red Hat listed Alquimia AI, Brave, the EvalEval coalition, IBM Research, Interdisciplinary Transformation University Austria, Microsoft, MIT Lincoln Laboratory, North Carolina State University, Nvidia and the Alan Turing Institute among the organizations participating in the effort. The software is planned for release under the Apache License 2.0, with development and project governance occurring publicly through GitHub.
For practitioners, the near-term value is visibility rather than a deployable platform
teams can inspect the project’s emerging architecture and assess whether its policy-to-control model fits their compliance and platform workflows. Any evaluation should distinguish the formation-stage design from tested operational performance; neither Red Hat nor the project site currently publishes deployment benchmarks or independent validation.
Key Points
- 1Red Hat formed asago on August 4 to connect AI governance policy with risk testing, recommended safeguards and deployment configuration.
- 2The planned workflow maps requirements to established frameworks and preserves traceability from policy clauses to tests and runtime controls.
- 3Asago is still in project formation, and no generally available release, production-readiness date or independent performance validation has been announced.
Scoring Rationale
Asago proposes a practical open-source bridge from AI policy to testable deployment controls with broad industry and academic participation, but it remains in formation with no released production evidence.
Sources
Primary source and supporting public references used for this report.
Practice interview problems based on real data
1,625 SQL & Python problems across 15 industry datasets — the exact type of data you work with.
Try 250 free problems