Skip to main content

In this article

Cross-Planner Integration

The Accessibility, Security, RAI, and SSSC planners are designed to share work rather than duplicate it. When two or more planners run against the same project, they exchange evidence records and deterministic signals through reference fields and a shared evidence-register schema.

NOTE

Integration is opportunistic. Each planner runs standalone; the flows below activate only when the partner artifact is present in the same session or tracking directory.

How Sharing Works​

MechanismHow it works
Evidence registerAccessibility evidence records follow the evidenceRegister entry shape in accessibility-state.schema.json and carry stable ids and sourceUri values, so other planners cite them by reference
Reference fieldsEntry modes set fields such as securityPlanRef and raiPlanRef in state.json, linking the accessibility plan to its upstream source
Deterministic signalsThe Security Reviewer's Codebase Profiler and the Accessibility Reviewer's profiler emit overlapping signals that each can consume as hints

Integration Matrix​

DirectionMechanismTrigger
Accessibility → SecurityShared evidence-entry shape, compatible with security planner evidence records; accessibility evidence records carry stable ids and sourceUri values that security reports cite by referenceSecurity reviewer encounters auth or content-rendering paths flagged as accessibility-relevant
Accessibility → RAIPlanner Phase 4 inserts humanReviewControl entries when the project profile declares AI-generated UI, generated alt text, or generated captionsDiscovery phase tags aiGeneratedSurfaces: true
Accessibility → SSSCSection 508 and EN 301 549 evidence records use the shared evidence-entry shape, so SSSC can cross-reference entries by stable id and sourceUriSSSC Phase 4 (Gap Analysis) runs with the accessibility plan present
RAI → AccessibilityRAI risk classification escalates to coga blocking controls when impacted populations include cognitive disability usersRAI Phase 2 prohibited-uses screen flagged "vulnerable populations"
Security → AccessibilitySecurity Codebase Profiler shares deterministic signals; the accessibility profiler may consume the same signals output as a hintBoth planners run in the same session

When several planners apply to one project, run them so that upstream evidence is available to downstream gates:

  1. Security Planner establishes the surface inventory and AI/ML flags.
  2. RAI Planner classifies risk and flags AI-generated UI for synthetic-content review.
  3. Accessibility Planner reuses both, then maps success criteria and produces evidence.
  4. SSSC Planner consumes accessibility evidence for procurement gates.

This order is a recommendation, not a requirement. Each planner detects available upstream artifacts and adapts.

Next Steps​

🤖 Crafted with precision by ✨Copilot following brilliant human instruction, then carefully refined by our team of discerning human reviewers.