Evidence

Proof you can hand to an auditor, and they can check it without us.

A screenshot of a dashboard proves nothing. Praesidia gives each AI system a signed bill of materials, a trust passport you can publish, and an audit trail your auditor verifies on their own machine, offline, without logging in to Praesidia.

Audit package · Claims Triage AI system · Q3 Illustrative
Executive summaryPDF for the reader who will not open anything else
PDF
AI inventory and risk registerWhat runs, who owns it, and the risks recorded against it
Data
Controls, policies and evaluationsThe rules in force and the results of the tests run against them
Data
IncidentsEvery incident in the period, with its response record
Data
Signed evidence bundleThe audit records themselves, signed and chained
Signed
How to verifyWritten steps your auditor follows to check the bundle offline
Steps

One export for a chosen period. The package is for reading; the signed bundle inside it is what an auditor checks. See the check they run.

What you get

Three kinds of proof, all in every plan

A signed bill of materials per AI system

Every model, prompt, tool, data source and policy an AI system uses, recorded as a signed version you can compare with the last release.

A trust passport you choose to publish

A public page, badge and PDF showing the posture of one AI system, and a way to check the passports your own vendors send you.

An audit trail that stands on its own

Signed records your auditor verifies offline with a verifier we hand to them, so the answer does not depend on trusting our console.

AI bill of materials

Know exactly what changed between two releases

An AI system is more than its code. Its bill of materials (AIBOM) lists the models and their versions, prompts, frameworks and packages, MCP servers and their tools, skills, data sources and vector stores, identities, policies and deployment artefacts. Each snapshot is signed; any two can be compared.

AIBOM diff · Claims Triage · v13 → v14 Illustrative
MCP tool · payments.refundNew tool the agent can call
Added
Model · claims-classifierVersion changed
Changed
Data source · legacy-claims-archiveNo longer connected
Removed

Components and the dependencies between them are compared separately, so a new connection between two unchanged parts still shows up.

  • Export any snapshot as it is stored, as CycloneDX for the tools your security team already runs, or as a self-contained file that carries what it needs to be verified offline.
  • Have your build pipeline send the CycloneDX software bill of materials it already produces, and its packages and frameworks fill in the AIBOM.
  • A new model, tool or data source on a system can reopen its risk review; see risk management.
Trust passport

Answer the security questionnaire before it arrives

Each AI system has a trust passport: a signed summary of its posture that you can keep private or publish as a public page, an embeddable badge and a PDF. A passport is private until you make it public.

What a passport covers
Posture
Identity, guardrails, audit trail and spend cap in place
Testing
Red-team results and attestations
Regulation
Frameworks mapped and regulatory classification
Make-up
Models, permissions, data categories and the AIBOM

It also records the AI system's incidents and an evidence root that ties the passport to the signed audit trail behind it.

Publish

Link the public page from your own trust center, embed the badge, or attach the PDF to a procurement reply.

Verify a vendor's passport

Import the passport an AI vendor sends you. Praesidia checks its signature against the vendor keys you pinned and tells you whether it is valid, invalid or unsigned.

Hold vendors to your bar

Set the frameworks you require, the highest residual risk you accept and the controls you expect, and see which rules an imported passport meets.

Audit trail

A record nobody can quietly edit, including us

Every governed decision is written as an audit record that is signed and linked to the one before it. Export a bundle for any period and your auditor checks it offline: whether anything was added, altered or removed since it was signed.

  1. 1

    An agent's call is decided, and the decision is recorded with who asked, what they asked for and which rule applied.

  2. 2

    The record is signed and joined to the chain of records before it.

  3. 3

    You export a signed bundle for the period your auditor asks about.

  4. 4

    They run the verifier on their own machine and read a pass or fail for each check.

What it checks and what it does not, step by step: verify your audit trail.

Technical details

What each piece of evidence is, and where it stops

AI bill of materials
A signed, versioned snapshot per AI system, taken when you ask for one from the app or the API. Snapshots can be compared, exported as stored, as CycloneDX or with their verification material attached, and checked against their signature. In every plan.
Trust passport
Signed, private by default, and public only for the AI systems you choose. Public passports are served without a login so a buyer can check them. Importing and verifying vendor passports is in every plan.
Audit package
An export for a chosen period that bundles an executive summary, inventory, risk register, controls, evaluations, incidents, policies and the signed evidence bundle, with verification steps. Organization owners and compliance officers can export it, in every plan.
Reports
  • A weekly executive report, also as a PDF, for organization owners.
  • Incident evidence bundles and regulator reports; see incident response.
  • Forensic search across audit records Advanced
  • Evidence coverage per framework and the ISO/IEC 42001 gap view Enterprise
Getting the verifier
The offline verifier is handed to customers and their auditors directly; it is not a public download yet. Ask your Praesidia contact.
What it is not
Evidence is not certification. A signed record proves what was recorded was not changed afterwards; it does not prove that every action was captured, and a passport reports posture rather than guaranteeing it. The limits of the check are listed on verify your audit trail.

Read more: tamper-evident audit logs · compliance mappings · Trust Center. Then: incident response · the whole platform.

Check the proof before you trust the product

Read exactly what the verifier checks, then connect one AI system and export its first signed record.