透明度報告
透明度報告 v2.0Version 2.0 · · Governance 2.0 public evidence surface
治理 2.0 摘要
此頁已納入 starnum 公開治理 2.0 介面,與系統卡、資料治理、透明度報告、使用政策和安全政策使用同一套證據層。
治理摘要
本頁報告目前公開指標,並將其連接到 claim 層級證據,而不是未支撐的敘述。
適用範圍
涵蓋公開 URL inventory、trust-page 稽核狀態、discovery surface、結構化資料、狀態/SLA 與透明度報告 hash。
實作狀態
2.0 將報告標準化為可重複本機驗證與可部署公開 artifacts。
季度報告:運行指標、品質分數、AI 安全資訊。每份報告提供人類可讀 HTML 與機器可讀 JSON 兩種格式。
現行報告
2026 Q3 透明度報告 · Current Machine Snapshot
CURRENT防竄改機制
每份報告在生成時附加 SHA-256 hash,並記錄於 Git commit 歷史中。任何事後修改都會造成 hash 不一致。
驗證指令: git log --format="%H %s" -- transparency/report-2026-Q3.json
GPG 簽署:已啟用(signingkey=0934DFA0EDA6363A)
報告排程
| 季度 | 發布時間 | 狀態 |
|---|---|---|
| 2026-Q2 | 2026-04-12 | ✓ 已發布 |
| 2026-Q3 | 2026-08-20 | ✓ 已發布 |
| 2026-Q4 | 2026-10-01 | 排程中 |
| 2027-Q1 | 2027-01-01 | 排程中 |
報告涵蓋的指標
- 文章總數與語言覆蓋:zh-TW 7,771 篇,10 語系追蹤
- LLM 閉環:10 條核心閉環通過機器驗證
- SEO/GEO/AEO/LLM:JSON-LD invalid=0,Breadcrumb=63,235,FAQ=34,415
- TM 可重用記憶:529,820 筆,verified=93,529
- 知識庫規模:3,240 個來源檔,32,842 個 chunks,覆蓋缺口 0
- AI 安全、資料治理、使用政策與安全政策頁面均納入 10 語 trust-page 驗證
- 透明度基礎設施:Cloudflare、R2、Supabase、GitHub、KB、TM、analytics 全列入閉環登記
相關頁面
- 透明度日誌 — 公開事件記錄(根因分析 / 緩解措施)
- 負責任 AI — 倫理原則 / 使用規範 / 免責聲明
- starnum-bench — 公開 基準測試 資料集
- 研究論文 — 方法論預印本
- 方法論 — 完整技術說明
聯絡:Instagram @mychenan
外部標準與一手來源
以下連結是本頁治理判斷採用的一手標準;它們是對照基準,不代表第三方替本站背書。
目前機器稽核快照
此區塊只使用本機可追溯的稽核資料,不新增無來源宣稱。日期為實際產出日。
- data/state-machine/i18n-parity.json: 8,036 parent URLs, 7,976 articles.
- data/kb-machine-audit.json: 3,238 source files, 0 missing coverage, 0 orphan chunks.
- data/discovery-surface-audit.json: 0 errors, 0 warnings.
- data/sla-report.json: critical / 3 critical, 1 warnings.
內容維護與更新判斷
此區塊讓治理頁內容可被機器檢查:每頁都必須公開它依賴哪些資料、哪些關聯頁會影響它,以及哪個 gate 會提報需要更新。
更新判斷
此頁不是靜態文案;來源資料、相關政策、公開指標或生成器變更時,AI Ops 只產出證據,由 AI agent 判斷是否改文。
人工邊界
系統負責偵測、提報與留證;最終修復與語氣判斷由 Codex/Claude 等 agent 執行。
驗證指令
node scripts/verify-trust-pages.js --check
發布完整性與 GPG
GPG signing active. signingkey=0934DFA0EDA6363A. Checked GitHub commit verification is valid.
可查驗 Evidence Layer
此區塊不是口號;每一個核心宣稱都有 claim id、來源 JSON、hash 與可重跑的驗證指令。公開頁只揭露可公開的治理證據,不公開原始碼、密鑰、私有資料或可被濫用的攻擊面細節。
| Claim ID | 可查驗值 | 狀態 | 責任頁 | 來源與驗證 |
|---|---|---|---|---|
| claim.public-url-manifest.indexable-count 公開 URL 與 canonical 清單 |
39,104 indexable URLs | verified | sitewide | node scripts/generate-public-evidence-manifest.js --dry |
| claim.trust-pages.audit-pass-rate 治理頁機器稽核 |
180/180 pass | verified | sitewide | node scripts/verify-trust-pages.js --check |
| claim.discovery-surface.zero-errors AI discovery surface 稽核 |
{"errors":0,"warnings":0} | verified | sitewide | node scripts/verify-discovery-surface.js |
| claim.structured-data.jsonld-errors JSON-LD / 結構化資料稽核 |
{"structured_data_invalid_files":0,"breadcrumb_count":28274,"faq_count":27506,"dataset_count":30,"article_count":27406} | verified | sitewide | node scripts/site-machine-audit.js |
| claim.status.sla-state 狀態頁 SLA 來源 |
critical / 4 critical, 0 warnings | verified | sitewide | node scripts/generate-status-page.js |
| claim.provider-alignment.openai-anthropic-gemini OpenAI / Anthropic / Google Gemini 對標 |
benchmark alignment only unless code/config evidence exists | verified | sitewide | node scripts/verify-public-evidence.js --check |
| claim.transparency-report.sha256 透明度報告 SHA-256 錨定 |
{"report":"transparency/report-2026-Q3.json","sha256":"f154fc87139b42098b02567fc93582c30addafc406420b3aea8bae79b6f4ac93"} | verified | sitewide | node scripts/update-transparency-current-data.js |
| claim.release-integrity.gpg-signing GPG signing 狀態 |
GPG signing active locally; checked GitHub commit verification is valid | verified | sitewide | gpg --list-secret-keys --keyid-format=long && git log -1 --show-signature |
系統卡 V2.0:技術透明公開層
此層把可公開的技術治理證據集中呈現:架構、資料來源、AI 使用邊界、品質閘門、發布完整性與供應商對標。公開範圍刻意排除原始碼、密鑰、可被濫用的攻擊面細節與私人資料。
公開架構
Cloudflare Workers、R2/D1/KV 與本機生成腳本共同構成公開網站與治理資料發布鏈。對外只公開行為、狀態與可驗證資料源,不公開密鑰或內部操作權限。
AI 使用揭露
程式碼掃描目前可驗證的 production inference 模型:未在 production code scan 中找到可驗證模型設定。OpenAI、Anthropic、Google Gemini 三方作為治理框架對標;未有程式碼或設定證據者,不寫成已上線使用。
品質與安全閘門
治理頁稽核 180/180 通過、JSON-LD 錯誤 0、discovery surface 錯誤 0。狀態頁如實顯示 critical / 3 critical, 1 warnings。
資料與可追溯性
知識庫 32,724 chunks、TM 512,152 entries、AI answer-ready 7,976/7,976。公開數據追到 data/state-machine/*、data/*audit*.json 與 transparency 報告。
| 治理面向 | OpenAI | Anthropic | Google Gemini | Starnum 落實證據 |
|---|---|---|---|---|
| 模型/系統卡揭露 | OpenAI models + safety docs | Claude model docs + system/model cards | Gemini model docs + safety settings | system-card、model-card、methodology、benchmark、transparency-log |
| 安全評估與使用邊界 | Safety best practices / deployment checklist | Responsible Scaling / safety policy | Gemini safety controls / policy | AI safety、acceptable-use、ethics、risk boundary copy、crawler policy audit |
| 資料治理 | Data controls / privacy controls | privacy and data handling docs | Gemini API data governance references | privacy、ai-data-governance、KB/TM source tracking、SHA-256 hashes |
| 監控與發布 | production checklist / eval discipline | system-card transparency discipline | model/version documentation discipline | deploy.js、status.html、SLA report、trust-pages-machine-audit、sitemap/hreflang audits |
- 來源:data/state-machine/model-card.json、public-bench.json、trust-pages.json、security-headers.json。
- 來源:data/trust-pages-machine-audit.json、data/discovery-surface-audit.json、data/ai-answer-readiness-audit.json。
- 來源:data/kb-machine-audit.json、data/tm/quality-audit-report.json、data/sla-report.json。
- 官方對標文件檢查日:2026-08-20;連結列於 OpenAI / Anthropic / Google Gemini 對標表。
V2.0 的重點不是多寫形容詞,而是把「已落實」與「尚未落實」分開:production 使用、治理對標、狀態異常、GPG 簽署、SLA breach 都依來源資料如實公開。
OpenAI / Anthropic / Google Gemini 對標
本站治理文件同步對照三家公開框架:模型文件、系統卡/模型卡、安全評估、資料治理與使用政策。這是治理對標,不等於宣稱每一家都已用於 production inference。 官方文件檢查日:2026-08-20
| 對標來源 | 治理焦點 | 本站揭露 | 官方來源 |
|---|---|---|---|
| OpenAI | 模型文件、最新模型說明、安全最佳實務、資料控制。 | 目前未在 production code scan 中找到可驗證模型設定;模型供應商僅列為治理對標。 | https://platform.openai.com/docs/models |
| Anthropic | Claude 模型文件、system card / model card、Responsible Scaling 與安全政策。 | 目前未在 production code scan 中找到可驗證模型設定;模型供應商僅列為治理對標。 | https://docs.anthropic.com/en/docs/about-claude/models |
| Google Gemini | Gemini API 模型文件、安全設定、資料治理與平台政策。 | 目前未在 production code scan 中找到可驗證模型設定;模型供應商僅列為治理對標。 | https://ai.google.dev/gemini-api/docs/models |