Audit and evidence
Continuous evidence that the platform is operating as designed, packaged for both internal review and external audit.
Audience: risk and compliance reviewers and IT (the enabler)
The same audit ledger payload powers a summary your analyst or auditor can read, an Auditor lens with a per-execution certificate and risk rubric (work item flows today), and an Engineering lens with the raw payload. One record, multiple readers.
What this section covers
The dual-lens model→Every action recorded once, presented through a readable summary and an engineering lens on the same page. An Auditor lens renders a per-execution certificate where it is available today.Deterministic execution→Same input, same output, every run. The reproducibility that lets AI move from experiment to production in a regulated environment.Safe execution and isolation→Sandboxed runs, no-network defaults, draft-first writes, and conflict-safe concurrent work. The runtime guarantees behind the audit record.COSO alignment→How the platform's controls map to the COSO framework and the February 2026 COSO AI governance guidance.Export, retention, and evidence packages→The 7-year retention default, export formats, and assembling a complete evidence package for a specific control or time window.