Learn · Audit & evidence
What you can prove
Five records, what each one answers, and who can read it.
Checked against the product on · written for people who need the evidence
The platform keeps five separate records. Each one answers a different question an auditor asks, and each has its own reader.
| Record | Answers | Readable by | Changeable |
|---|---|---|---|
| The logbook | What was seen, what fired, what was decided, what was done. | Anyone with records access in the work area. | Append-only. |
| The workspace audit log | Who changed a role, a key, or a setting. | Admins of that work area. | Append-only. |
| The control crosswalk | Which control each logbook entry evidences. | Anyone with compliance access. | Links are added and removed. |
| Attestations | Which owner signed off on which control, and when. | Anyone with compliance access. | Append-only, anchored to the logbook. |
| The operator audit trail | What our own staff did across accounts. | Us. It is separate from your records by design. | Append-only. |
Safe by default. Our operators see account health and billing. Your watched data and your conclusions sit outside that boundary, which the server enforces on every request, and every operator action lands in a trail of its own.