MODEL CARD — CV-17 Soft Sensor (Composition proxy)
Status: Closed-loop 사용 REJECTED
Site: continuous unit(익명)
Review board: process · reliability · data · OT security
이 페이지가 card다. Pitch deck이 아니다.
1. Intended use (주장)
Lab sample 사이에서 composition CV-17을 infer하여 setpoint를 trim.
Human-on-the-loop를 약속. Code path는 write를 허용.
2. Training data
| Field | Claim | Audit | | --- | --- | --- | | Window | 18 months | Bad analyzer 6주 포함 | | Labels | Lab GC | Lab lag 14–36 h; 느슨한 backfill | | Sampling | 1 min | Historian compression 존재(H-19 교훈 참조) | | Leakage | None claimed | Feature list에 setpoint — leakage |
Reject reason R1: Controller setpoint feature를 통한 target leakage.
3. Metrics (offline)
R²는 훌륭해 보였다. 모델이 setpoint를 냄새 맡으면 항상 그렇다.
Setpoint feature 없는 holdout: collapse.
Reject reason R2: Vanity metrics.

Leakage가 있는 높은 R²는 credential이 아니라 confession이다.
4. Operating envelope
Grade change, startup, analyzer cal에 대해 미기재.
Reject reason R3: Envelope 없음 → plant gate 없음.
5. Monitoring & fallback
Lab 대비 residual monitor 없음. Lab 불일치 시 automatic disable 없음.
Reject reason R4: 모니터링되지 않는 soft sensor는 침묵하는 operator가 된다.
6. Authority
제안: 모델이 PID를 ±2% 내에서 nudge.
Safety review: ±2% continuous는 intent를 넘어 walk할 수 있다(write-path F-01 pattern 참조).
Reject reason R5: Gated clamp + ack 없는 write authority.
7. Allowed residual use (조건부)
Advisory trend만, watermark, OPC write 없음, 다음 이후:
- Feature에서 setpoint 제거
- Compression-aware training export
- Envelope + lab residual monitor
- 새 card review
그때까지: REJECTED.

Read-only는 status다. Closed-loop는 privilege다.
Adjacent fences
비지도 drift는 unlabeled hypothesis를 소유한다. Semantic catalog는 meaning을 소유한다. Write-path red-team은 위험한 actuation class를 소유한다. Soft-sensor closed-loop 에세이는 성공 패턴을 소유한다—이 card는 gate를 통과하지 못한 실패를 소유한다. Leaked R²를 promote하지 말라.
Sign-off
Process ____ Data ____ OT ____ Reliability ____
향후 resubmission에는 네 서명 모두 필요. 구두 “좋아 보인다”는 signature가 아니다.
