Product Scope
Built Foundation
Evidence capture with integrity checks, fail-closed verification, deterministic replay, controlled-change verification, and a development-signed evidence package.
- [BUILT]Evidence capture SDK — sealed with hash + integrity chainSnapshots, root hashes, replay-ready evidence sets.
- [BUILT]Fail-closed verification bridgeAdvisory findings only promote to verified evidence after required checks and authorized review.
- [BUILT]Deterministic replay from preserved evidenceRe-runs stay bound to recorded conditions unless a candidate introduces new ones.
- [BUILT]Candidate Verification against Authorized Expected BehaviorVerified outcomes tied to specific decision-time conditions.
- [BUILT]Signed Evidence Package (development signing)Full attachments, verification results, scope, and disclosed limitations.
Built Foundation — Discovery surfaces
Decision Landscape is built. Assurance Signals are planned and currently illustrative in this walkthrough.
- [BUILT]Decision LandscapeProgressive view over preserved evidence, coverage, and gaps.
- [PLANNED]Policy PacksPrebuilt policy bundles per decision family.
- [PLANNED]Assurance Signals serviceCohort-level coverage analysis with disclosed limitations; shown here as an illustrative capability boundary.
- [PLANNED]Production source connectorsDirect, sealed-at-ingest connections to systems like Snowflake, S3, and Kafka.
Planned Trust Layer
Hardening required before evidence packages are suitable for regulator or insurer reliance: stronger signing, external timestamps, and immutable retention.
- [PLANNED]Tenant isolation on every lookup pathCloses remaining gaps between tenant-scoped and unscoped evidence reads.
- [PLANNED]Asymmetric evidence-package signing (customer-managed KMS)Verifiable without access to the Notary AI platform itself.
- [PLANNED]RFC 3161 trusted timestampsTimestamps anchored to an external time authority rather than a local clock.
- [PLANNED]Immutable, write-once retentionPhysical retention guarantees and configurable retention policy at rest.
Planned Expansion
Portability so recipients — insurers, regulators, and partner enterprises — can examine evidence without depending on the Notary AI platform.
- [PLANNED]Portable evidence-package spec + reference verifierInterchange format built on hash roots and attestations.
- [PLANNED]Independent Verification CLIStandalone tool for offline verification by a recipient.
- [PLANNED]Framework-mapping catalogIllustrative mappings to EU AI Act, NIST RMF, SEC, and OCC references, plus customer-defined mappings.
Illustrative walkthrough, explicit capability state
Company XYZ, its personas, decisions, records, scores, and digests are fictional and use seeded data. This walkthrough does not connect to real customer, provider, model, or GRC systems. Capabilities labeled Planned are illustrative and are not currently available. Notary AI does not provide legal advice, certify regulatory compliance, guarantee AI-system performance, or replace an organization's governance and accountability obligations. Third-party product names and trademarks belong to their respective owners.