Every Agent Audit export pack is a signed, hash-chained, A4-paginated artefact that a regulator can read, an auditor can verify, and a cyber underwriter can score. Below is the sample format — open in browser, print to PDF, no email gate.
Eight-page evidence pack with hash-chain proof, signed manifest, RFC 3161 notarisation tokens and auditor-friendly index. Sample data only.
SYSC 9.1 retention layout with model-governance trail. Open beta Q3 2026.
Composite underwriter-question layout with AI-agent control evidence. Open beta Q3 2026.
Every export pack contains five sections that map directly to what regulators and underwriters now expect: an executive summary describing the named system and the period covered, a structured evidence index with receipt counts and integrity status, the hash-chain proof with RFC 3161 notarisation tokens you can verify offline, the control-by-control mapping (Article 12 paragraphs 1–3 for the EU pack, SYSC clauses for FCA, composite question list for insurance), and a signed manifest that an auditor can re-run against the read-only archive.
The sample artefact uses synthetic data — pack ID prefixed
AA-2026Q1-CT3-0001, watermarked "SAMPLE" on every page. The
production pack format is identical; only the data is real. We publish
the format publicly so auditors, legal teams and procurement reviewers
can sign off the artefact before the SDK is installed, not after.
Want the deeper rationale? Read EU AI Act Article 12 explained, what RFC 3161 timestamping is, and the EU AI Act solution page for the buyer view.