Bốn Nguyên Tắc Cốt Lõi
Core Principles v2.0Version 2.0 · · Governance 2.0 public evidence surface
Governance 2.0 Overview
This page is part of the starnum public Governance 2.0 surface and uses the same evidence layer as the system card, data governance, transparency report, use policy, and security policy.
Governance Summary
This page states the operating principles that govern product, content, AI assistance, and public disclosure.
Scope
Cultural respect, autonomy, transparency, privacy, safety, accessibility, and evidence-backed release discipline.
Implementation Status
Version 2.0 turns the principles into a navigation hub connected to the same evidence layer as the policy pages.
Đây là khung vận hành của starnum.com.tw. Mỗi nguyên tắc đều có triển khai kỹ thuật cụ thể — không chỉ là tuyên bố.
Cập nhật lần cuối:
Các Triển Khai Kỹ Thuật Đã Có
- ✓Trang methodology (10 ngôn ngữ) — tài liệu hoá đầy đủ các nguồn tri thức, engine lập lá số, và quy trình chất lượng
- ✓Thẻ Hệ Thống (Model Card) — phạm vi áp dụng/không áp dụng và giới hạn đã biết của Starnum Logic Engine v5.0
- ✓Tiêu chuẩn chất lượng — kết quả đánh giá trên bộ thử nghiệm cố định 37 lá số, chạy lại định kỳ để so sánh công khai
- ✓CHANGELOG — bản ghi chi tiết mỗi lần cập nhật hệ thống, theo định dạng Keep a Changelog
- ✓Tuyên bố trường phái rõ ràng — toàn bộ trang dùng trường phái Lục Bân Triệu (Trung Châu); không trộn, đánh dấu rõ trên thẻ hệ thống
- ✓Tuyên bố giới hạn rõ ràng — các lĩnh vực cấm (dự đoán tử vong, chẩn đoán y tế, nhân vật chính trị) được công bố trên trang acceptable-use
- ✓Hệ thống Claim-Evidence — mọi luận điểm siêu hình học trong mọi bài viết được gắn với một nguồn cơ sở tri thức; không có khẳng định vô căn cứ
- ✓Chính sách công bố bảo mật — chuẩn RFC 9116, với lịch trình khắc phục phân cấp 30/60/90 ngày được công khai
Các Triển Khai Kỹ Thuật Đã Có
- ✓Hash toàn vẹn nội dung SHA256 — mỗi bài viết nhúng giá trị SHA256 đưa vào trường
hasHashcủa JSON-LD, phát hiện mọi thay đổi nội dung - ✓Engine lập lá số iztro mã nguồn mở — logic tính toán lá số hoàn toàn mã nguồn mở; bất kỳ nhà nghiên cứu nào cũng có thể xác minh độc lập kết quả lá số
- ✓JSON-LD Schema đọc được bằng máy — Schema của mỗi bài viết được xác thực bằng tự động hoá và tuân thủ schema.org
- ✓Bộ tiêu chuẩn công khai (eval-set) — phân tích tham chiếu cho 37 lá số thử nghiệm cố định, có thể tái hiện và xác minh
- ✓Lịch sử phiên bản Git — mọi thay đổi nội dung được lưu giữ tại kho công khai GitHub, có thể truy vết đầy đủ
- ✓Xác thực tự động 117 quy tắc cứng siêu hình học — được áp dụng trước khi xuất bản; mọi vi phạm đều chặn phát hành
- ✓Xác thực chéo đa mô hình — logic siêu hình học được rà soát song song bởi 4 công cụ AI; bất kỳ bất thường nào đánh dấu bài viết để rà soát lại
- ✓Quét lỗ hổng phụ thuộc — các công cụ cục bộ quét định kỳ các phụ thuộc npm để đảm bảo an toàn gói của bên thứ ba
Các Triển Khai Kỹ Thuật Đã Có
- ✓Cơ sở tri thức Lục Bân Triệu — 2.758 tệp / 1.537.711+ dòng văn bản siêu hình học có cấu trúc, tham chiếu chéo qua 8 nguồn để xây dựng nền tảng văn liệu đáng tin cậy
- ✓Tuyên bố nhất quán trường phái — toàn bộ trang dùng bảng Tứ Hoá trường phái Trung Châu (Lục Bân Triệu); không trộn trường phái vì tiện bố cục
- ✓Trích dẫn văn liệu cổ điển — các luận điểm quan trọng được quy rõ nguồn các tác phẩm có tên như bộ Tử Vi Đẩu Số Toàn Thư
- ✓Kiểm toán chung 4 AI — Anthropic / OpenAI / Google Gemini governance benchmarks rà soát logic siêu hình học song song; sửa đổi được quyết định bằng bỏ phiếu
- ✓117 quy tắc cứng siêu hình học — các quy tắc cốt lõi như sự kiện bất khả của Tứ Hoá và điều kiện phán đoán cách cục được máy cưỡng chế
- ✓Đồ thị tri thức GraphRAG — 343 nút thực thể / 679 quan hệ, neo mọi luận điểm vào vị trí cấu trúc nhất quán
- ✓Trình độ tác giả — nền tảng nghiên cứu siêu hình học và lý do chọn hệ thống tri thức được công bố trên trang about
- ✓22 khối phân tích chuẩn — mỗi bản giải lá số tuân theo cấu trúc cố định, đảm bảo đầy đủ và nhất quán
Các Triển Khai Kỹ Thuật Đã Có
- ✓Quy trình chất lượng tự động — kiểm tra chất lượng, cập nhật sitemap, giám sát hết hạn chứng chỉ, và các việc khác, hoàn toàn tự động
- ✓Quản lý vòng đời quy tắc — các quy tắc không kích hoạt 90 ngày được tự động đề xuất loại bỏ, ngăn cơ sở quy tắc phình không giới hạn
- ✓Tiến hoá do thất bại dẫn dắt — khi một loại vấn đề chất lượng xảy ra 3 lần, một quy tắc mới được đề xuất tự động; sai lầm không lặp lại
- ✓Vòng lặp đóng chất lượng sáu tầng (L1-L6) — phòng thủ tự động từ đầu ra bài viết đến chiến lược, mỗi tầng giảm can thiệp thủ công
- ✓Theo dõi độ tươi của nội dung — các bài viết lỗi thời được tự động phát hiện và xếp hàng cập nhật, duy trì tính hợp lệ dài hạn
- ✓Bảo vệ giới hạn tài nguyên — lockfile GPU ngăn sự cố out-of-memory, đảm bảo hoạt động lâu dài ổn định
- ✓Theo dõi hết hạn chứng chỉ — khoá API và chứng chỉ dịch vụ kích hoạt cảnh báo trước khi hết hạn, tránh gián đoạn
- ✓Thiết kế chi phí tính toán thấp — Cloudflare Pages lưu trữ tĩnh cộng tính toán biên Workers; chi phí vận hành được kiểm soát
Chúng Tôi Giải Quyết Xung Đột Nguyên Tắc Như Thế Nào
Khi bốn nguyên tắc xung đột, chúng tôi ưu tiên theo thứ tự này:
P3 Có uy tín > P1 Công khai minh bạch > P2 Có thể xác minh > P4 Bền vững
Nói cách khác: bất kỳ tính năng nào làm giảm độ chính xác của nội dung (P3) sẽ không được phát hành — ngay cả khi nó cải thiện tính minh bạch (P1) hoặc hiệu quả (P4).
Ví dụ Giải Quyết
- P4 vs P3: Một tính năng tự động hoá tăng hiệu quả nhưng có thể gây lỗi logic siêu hình học → P3 thắng, tính năng không phát hành đến khi logic được xác minh
- P1 vs P4: Công bố một số dữ liệu nội bộ cải thiện minh bạch nhưng tăng chi phí bảo trì → P1 thắng, chúng tôi gánh chi phí
- P2 vs P4: Thêm cơ chế xác thực làm chậm hệ thống → P2 thắng, không thể bỏ qua xác thực
Ma trận Tính năng × Nguyên tắc
Mỗi tính năng cốt lõi phải ánh xạ với ít nhất 2 nguyên tắc; nếu không, sự cần thiết của nó sẽ được đánh giá lại.
| Tính năng | P1 Minh bạch | P2 Xác minh | P3 Uy tín | P4 Bền vững |
|---|---|---|---|---|
| Hash nội dung SHA256 | ✓ | ✓ | — | ✓ |
| Hệ thống trích dẫn Claim-Evidence | ✓ | ✓ | ✓ | — |
| Kiểm toán quản trị đa nhà cung cấp | ✓ | ✓ | ✓ | ✓ |
| Cơ sở tri thức Lục Bân Triệu (KB) | ✓ | ✓ | ✓ | ✓ |
| 117 quy tắc cứng siêu hình học | ✓ | ✓ | ✓ | ✓ |
| Engine lập lá số iztro mã nguồn mở | ✓ | ✓ | ✓ | — |
| Luồng công việc chất lượng tự động | — | ✓ | — | ✓ |
| Benchmark công khai (eval-set) | ✓ | ✓ | ✓ | — |
| Quản lý vòng đời quy tắc | — | — | ✓ | ✓ |
Tài nguyên Minh bạch Liên quan
Các tài nguyên này cho thấy bốn nguyên tắc được triển khai ở mọi tầng như thế nào:
Tiêu chuẩn bên ngoài và nguồn sơ cấp
Các nguồn sơ cấp này định hướng nội dung trang. Đây là chuẩn đối chiếu, không phải sự chứng thực của bên thứ ba.
Current Machine Audit Snapshot
This block uses only traceable local audit data. No unsupported metrics or model claims are added.
- data/state-machine/i18n-parity.json: 8,036 parent URLs, 7,976 articles.
- data/kb-machine-audit.json: 3,238 source files, 0 missing coverage, 0 orphan chunks.
- data/discovery-surface-audit.json: 0 errors, 0 warnings.
- data/sla-report.json: critical / 5 critical, 0 warnings.
Content Maintenance And Update Decision
This block makes governance-page content machine-checkable: every page must disclose its source artifacts, related pages, and the gate that reports update needs.
Update Decision
This is not static copy. When source artifacts, related policies, public metrics, or generators change, AI Ops reports evidence and an AI agent decides whether the page needs edits.
Human Boundary
Systems detect, report, and preserve machine-readable evidence. Codex/Claude agents perform final judgment and repair.
Verification Command
node scripts/verify-trust-pages.js --check
data/state-machine/trust-pages.jsondata/public-claim-registry.jsondata/sla-report.json- Related governance pages: Ethics Statement · Privacy Policy · AI Safety · Accessibility
- Update flow:
npm run update:trust-pages→npm run test:trust
Verifiable Evidence Layer
This block is not a narrative claim. Each core assertion has a claim id, source JSON, hash, and a repeatable verification command. Public pages disclose governance evidence without exposing source code, secrets, private data, or exploitable attack details.
| Claim ID | Verifiable value | Status | Owner | Source and verification |
|---|---|---|---|---|
| claim.public-url-manifest.indexable-count Public URL and canonical inventory |
38,965 indexable URLs | verified | sitewide | node scripts/generate-public-evidence-manifest.js --dry |
| claim.trust-pages.audit-pass-rate Trust page machine audit |
180/180 pass | verified | sitewide | node scripts/verify-trust-pages.js --check |
| claim.discovery-surface.zero-errors AI discovery surface audit |
{"errors":0,"warnings":0} | verified | sitewide | node scripts/verify-discovery-surface.js |
| claim.structured-data.jsonld-errors JSON-LD / structured data audit |
{"structured_data_invalid_files":0,"breadcrumb_count":28274,"faq_count":27506,"dataset_count":30,"article_count":27406} | verified | sitewide | node scripts/site-machine-audit.js |
| claim.status.sla-state Status page SLA source |
critical / 5 critical, 0 warnings | verified | sitewide | node scripts/generate-status-page.js |
| claim.provider-alignment.openai-anthropic-gemini OpenAI / Anthropic / Google Gemini benchmark alignment |
benchmark alignment only unless code/config evidence exists | verified | sitewide | node scripts/verify-public-evidence.js --check |
| claim.transparency-report.sha256 Transparency report SHA-256 anchor |
{"report":"transparency/report-2026-Q3.json","sha256":"47b09e2ca4e8b8fe9dffdfaccef3b11212de9ee3a8a14badca8044e2481203c5"} | verified | sitewide | node scripts/update-transparency-current-data.js |
| claim.release-integrity.gpg-signing GPG signing status |
GPG signing configured locally; GitHub verification pending | github_verification_pending | sitewide | gpg --list-secret-keys --keyid-format=long && git log -1 --show-signature |
System Card V2.0: Technical Transparency Layer
This layer publishes the technical governance evidence that can be safely disclosed: architecture, data sources, AI-use boundaries, quality gates, release integrity, and provider alignment. Source code, secrets, exploitable attack details, and private data remain out of scope.
Public architecture
Cloudflare Pages/Workers, R2/D1/KV/Pagefind, and local generation scripts form the public-site and governance publication chain. Public pages disclose behavior, state, and traceable sources, not secrets or internal permissions.
AI-use disclosure
AI-assisted workflows are used for knowledge-base retrieval, cross-checking, and error detection. Governance documents are benchmarked against OpenAI, Anthropic, and Google Gemini public frameworks. Production model usage is disclosed only when code/config evidence exists.
Quality and safety gates
Governance page audit 180/180 passing, JSON-LD errors 0, discovery-surface errors 0. Status pages report critical / 5 critical, 0 warnings as-is.
Data traceability
Knowledge base 32,724 chunks, TM 789,031 entries, AI answer-ready 7,976/7,976. Public metrics trace to data/state-machine/*, data/*audit*.json, and transparency reports.
| Governance area | OpenAI | Anthropic | Google Gemini | Starnum implementation evidence |
|---|---|---|---|---|
| Model/system-card disclosure | OpenAI models + safety docs | Claude model docs + system/model cards | Gemini model docs + safety settings | system-card, model-card, methodology, benchmark, transparency-log |
| Safety evaluation and use boundaries | Safety best practices / deployment checklist | Responsible Scaling / safety policy | Gemini safety controls / policy | AI safety, acceptable-use, ethics, risk-boundary copy, crawler policy audit |
| Data governance | Data controls / privacy controls | privacy and data handling docs | Gemini API data governance references | privacy, ai-data-governance, KB/TM source tracking, SHA-256 hashes |
| Monitoring and release | production checklist / eval discipline | system-card transparency discipline | model/version documentation discipline | deploy.js, status.html, SLA report, trust-pages-machine-audit, sitemap/hreflang audits |
- Sources: data/state-machine/model-card.json, public-bench.json, trust-pages.json, security-headers.json.
- Sources: data/trust-pages-machine-audit.json, data/discovery-surface-audit.json, data/ai-answer-readiness-audit.json.
- Sources: data/kb-machine-audit.json, data/tm/quality-audit-report.json, data/sla-report.json.
- Official benchmark docs checked: 2026-07-30; links are listed in the OpenAI / Anthropic / Google Gemini alignment table.
The V2.0 goal is not more claims; it separates implemented controls from planned controls. Production usage, benchmark alignment, status exceptions, GPG signing, and SLA breaches are disclosed from source data.
Release Integrity And GPG
GPG signing configured locally. signingkey=0934DFA0EDA6363A. GitHub verification pending until the public key upload and Verified badge are confirmed.
OpenAI / Anthropic / Google Gemini Alignment
The governance surface is benchmarked against the three public frameworks: model docs, system/model cards, safety evaluation, data governance, and use policies. This is benchmark alignment, not a claim that every provider is active in production inference. Official docs checked: 2026-07-30
| Provider | Governance focus | Starnum disclosure | Official source |
|---|---|---|---|
| OpenAI | Model documentation, latest model notes, safety best practices, and data controls. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://platform.openai.com/docs/models |
| Anthropic | Claude model documentation, system/model cards, Responsible Scaling, and safety policy. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://docs.anthropic.com/en/docs/about-claude/models |
| Google Gemini | Gemini API model documentation, safety settings, data governance, and platform policy. | No verifiable production model setting was found in the production code scan; providers are listed as governance benchmarks. | https://ai.google.dev/gemini-api/docs/models |